403Webshell
Server IP : 103.82.32.14  /  Your IP : 216.73.217.177
Web Server : Apache/2.2.32 (Unix) mod_ssl/2.2.32 OpenSSL/1.0.1e-fips mod_fcgid/2.3.9
System : Linux cloud.lonmanhoabinh.com 2.6.32-754.35.1.el6.x86_64 #1 SMP Sat Nov 7 12:42:14 UTC 2020 x86_64
User : lonmakmf ( 524)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /home/rubymnik/public_html/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/rubymnik/public_html/configchannel.php
<?php
$conn = mysqli_connect('localhost', 'rubymnik_m', 'trinhlam', 'rubymnik_m') or die ('DIE SQL');
function SelectAll($table, $sql, $show = false)
{
	global $conn;
	$SQL = $sql;
	if($table == 'QuanLyChannel')
	{
		$SQL = str_replace("WHERE", "WHERE (". SelectChannel(). ") AND ", $SQL);
	}
	if($show)
	{
		echo $SQL;
	}
	//mysql_set_charset('utf8', $conn);
	$result = mysqli_query($conn, $SQL);
	return $result;
}
function Select($table, $countRow = false, $where = "", $order = "", $show = false)
{
	global $conn;
	$SQL = "SELECT * FROM `" .$table. "` ";
	if($table == 'SoLieuChannel')
	{
		$SQL .= "JOIN QuanLyChannel ON QuanLyChannel.id = SoLieuChannel.IdChannel";
	}
	if($table == 'SoLieuChannel' || $table == 'LabelMusic')
	{
		$SQL .= " WHERE (". SelectChannel('IdNguoiLam'). ")";
		if($where != "")
		{
			$SQL .= " AND " . $where;
		}
	}
	else if($table == 'QuanLyChannel')
	{
		$SQL .= " WHERE (". SelectChannel('IdNguoiLam'). ")";
		if($where != "")
		{
			$SQL .= " AND " . $where;
		}
	}
	else
	{
		if($where != "")
		{
			$SQL .= " WHERE " . $where;
		}
	}
	if($order != "")
	{
		$SQL .= " ORDER BY " . $order;
	}
	if($_SESSION['login']['Admin'] == 1 && $table == 'SoLieuChannel')
	{
			//echo $SQL . "\n";
	}
	
	//mysql_set_charset('utf8', $conn);
	$result = mysqli_query($conn, $SQL);
	$row = mysqli_num_rows($result);
	if($show) echo $SQL;
	if($countRow) return $row;
	return $result;
}
function SelectThuan($table, $countRow = false, $where = "")
{
	global $conn;
	$SQL = "SELECT * FROM `" .$table. "` ";
	if($where != "")
	{
		$SQL .= " WHERE " . $where;
	}
	//mysql_set_charset('utf8', $conn);
	$result = mysqli_query($conn, $SQL);
	
	//echo $SQL;
	if($countRow) 
	{
		$row = mysqli_num_rows($result);
		return $row;
	}
	return $result;
}
function SelectSQL($sql)
{
	global $conn;
	
	//mysql_set_charset('utf8', $conn);
	$result = mysqli_query($conn, $sql);
	$row = mysqli_num_rows($result);
	return $result;
}
function SelectChannel($tenSoSanh = 'IdNguoiLam')
{
	$idcheck = $_SESSION['login']['id'];
	if($_SESSION['login']['Admin'] == 1) 
	{
		$idcheck = 1;
	}
	$result = Select('NguoiLam', false, "`QuanLy` = ".$idcheck."");
	$listUser[] = $_SESSION['login']['id'];
	while($res = mysqli_fetch_array($result))
	{
		$resultUserQL = Select('NguoiLam', false, "`QuanLy` = ".$res['id']."");
		$listUser[] = $res['id'];
		while($resUserCon = mysqli_fetch_array($resultUserQL))
		{
			$listUser[] = $resUserCon['id'];
		}
	}
	$dataV = "";
	foreach($listUser as $key => $item)
	{
		$dataV .= "`".$tenSoSanh."` = " . $item;
		if($key != (count($listUser)-1))
		{
			$dataV .= ' OR ';
		}
	}
	return $dataV;
}

function Insert($table, $data = array())
{
	global $conn;
	if(is_array($data) && count($data) > 0)
	{
		$SQL = "INSERT INTO `" .$table. "` ";
		$key_insert = "(";
		$item_insert = "(";
		foreach($data as $key => $item)
		{
			$key_insert .= "`".$key."`, ";
			$item_insert .= "'".$item."', ";
		}
		$key_insert = trim($key_insert, ", ") . ")";
		$item_insert = trim($item_insert, ", ") . ")";
		$SQL .= $key_insert . " VALUES " . $item_insert;
		//echo $SQL . "\n";
		mysqli_query($conn, $SQL);
		return mysqli_insert_id($conn);
		
	}
}
function Update($table, $data = array(), $where = "")
{
	global $conn;
	if(is_array($data) && count($data) > 0)
	{
		$SQL = "UPDATE `" .$table. "` SET ";
		$item_query = "";
		foreach($data as $key => $item)
		{
			if($item != 'NULL')
			{
				$item_query .= "`".$key."` = " . "'".$item."', ";
			}
			else
			{
				$item_query .= "`".$key."` = NULL, ";
			}
		}
		$SQL .= trim($item_query, ", ");
		if($where != "")
		{
			$SQL .= " WHERE " . $where;
		}
		//echo $SQL;
		mysqli_query($conn, $SQL);
	}
}
function Delete($table, $where = "")
{
	global $conn;
	$SQL = "DELETE FROM `" .$table. "`";
	if($where != "")
	{
		$SQL .= " WHERE " . $where;
	}
	$result = mysqli_query($conn, $SQL);
}

Youez - 2016 - github.com/yon3zu
LinuXploit