One Hat Cyber Team
Your IP :
216.73.216.240
Server IP :
162.240.106.28
Server :
Linux server.ganesand.com 3.10.0-1160.80.1.el7.x86_64 #1 SMP Tue Nov 8 15:48:59 UTC 2022 x86_64
Server Software :
Apache
PHP Version :
7.1.33
Buat File
|
Buat Folder
Eksekusi
Dir :
~
/
home
/
thoa
/
public_html
/
fpdf
/
View File Name :
id.php
<?php session_start(); echo "test"; include '../config.php'; $blno = "www.thoa.in"; if($_POST['submit']){ $_SESSION['year'] = $year = mysqli_real_escape_string($con,$_POST['year']); $_SESSION['cerno'] = $cerno = mysqli_real_escape_string($con,$_POST['cerno']); $_SESSION['memno'] = $memno = mysqli_real_escape_string($con,$_POST['memno']); $_SESSION['memname'] = $memname = mysqli_real_escape_string($con,$_POST['memname']); $_SESSION['memid'] = $memid = mysqli_real_escape_string($con,$_POST['memid']); $_SESSION['memcity'] = $memcity = mysqli_real_escape_string($con,$_POST['memcity']); $_SESSION['memstate'] = $memstate = mysqli_real_escape_string($con,$_POST['memstate']); $_SESSION['memcou'] = $memcou = mysqli_real_escape_string($con,$_POST['memcou']); $_SESSION['memdate'] = $memdate = mysqli_real_escape_string($con,$_POST['memdate']); $_SESSION['memdate1'] = $memdate1 = mysqli_real_escape_string($con,$_POST['memdate1']); $_SESSION['memimg'] = $memimg = ($_FILES['memimg']['name']); $tmp_img = $_FILES['memimg']['tmp_name']; move_uploaded_file($tmp_img, "images/".$memimg); $i=1; $_REQUEST['data'] = "certificate"; ?> <?php //set it to writable location, a place for temp generated PNG files $PNG_TEMP_DIR = dirname(__FILE__).DIRECTORY_SEPARATOR.'temp'.DIRECTORY_SEPARATOR; //html PNG location prefix $PNG_WEB_DIR = 'temp/'; include "qrlib.php"; //ofcourse we need rights to create temp dir if (!file_exists($PNG_TEMP_DIR)) mkdir($PNG_TEMP_DIR); $filename = $PNG_TEMP_DIR.'test.png'; //processing form input //remember to sanitize user input in real-life solution !!! $errorCorrectionLevel = 'L'; if (isset($_REQUEST['level']) && in_array($_REQUEST['level'], array('L','M','Q','H'))) $errorCorrectionLevel = $_REQUEST['level']; $matrixPointSize = 4; if (isset($_REQUEST['size'])) $matrixPointSize = min(max((int)$_REQUEST['size'], 1), 10); if (isset($_REQUEST['data'])) { //it's very important! if (trim($_REQUEST['data']) == '') die('data cannot be empty! <a href="?">back</a>'); // user data $filename = $PNG_TEMP_DIR.'test'.md5($_REQUEST['data'].'|'.$errorCorrectionLevel.'|'.$matrixPointSize).'.png'; QRcode::png($_REQUEST['data'], $filename, $errorCorrectionLevel, $matrixPointSize, 2); } else { //default data echo 'You can provide data in GET parameter: <a href="?data=like_that">like that</a><hr/>'; QRcode::png('PHP QR Code :)', $filename, $errorCorrectionLevel, $matrixPointSize, 2); } //display generated file '<img src="'.$PNG_WEB_DIR.basename($filename).'" /><hr/>'; $codeContents = $_REQUEST['data']; // we need to generate filename somehow, // with md5 or with database ID used to obtains $codeContents... $fileName = '005_file.png'; $pngAbsoluteFilePath = $tempDir.$fileName; $urlRelativeFilePath = EXAMPLE_TMP_URLRELPATH.$fileName; // generating if (file_exists($pngAbsoluteFilePath)) { QRcode::png($codeContents, $pngAbsoluteFilePath); 'File generated!'; '<hr />'; } 'Server PNG File: '.$pngAbsoluteFilePath; '<hr />'; // displaying '<img src="'.$urlRelativeFilePath.'" />'; ?> <script type="text/javascript"> setTimeout(function () { location.href = 'idcard.php'; }, 2000); </script> <?php } ?>