!C99Shell v. 1.0 pre-release build #16!

Software: Apache/2.0.54 (Fedora). PHP/5.0.4 

uname -a: Linux mina-info.me 2.6.17-1.2142_FC4smp #1 SMP Tue Jul 11 22:57:02 EDT 2006 i686 

uid=48(apache) gid=48(apache) groups=48(apache)
context=system_u:system_r:httpd_sys_script_t
 

Safe-mode: OFF (not secure)

/home/mnnews/public_html/mina/minabusineseng/admin/   drwxr-xr-x
Free 3.9 GB of 27.03 GB (14.41%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     addTopic.inc.php3 (4.72 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |

<?
  
require("$mysqlCall");
  if(
checkSuperSession($superSession, $REMOTE_ADDR))
    {

      include(
"include/rootGui.inc.php3");
      
      
$userId = getUserSUId($superSession);
      
$userInfo = getUserInfo($userId);

      if((
$userInfo[SuperUser]==1) && ($userInfo[manageTopics]==1) && ($userInfo[active]==1))
    {

      if(
$addTopic)
        {
      
          
$insert = "insert into $topics values('', '$title', '$details', '$itemID')";
          print
"<br>";
          
$result = MYSQL_QUERY($insert);        
          
          if(
$result)
        {
          print(
"That worked :)");
          print(
"<META HTTP-EQUIV=\"Refresh\" CONTENT=\"1; URL=index.php3?mode=mangeTopics&superSession=$superSession\">");
        }

          else
        {
          print(
"Something has gone wrong here");
        }

        }

      else if(
$updateTopic)
        {

         
          print(
"<br>'$ID', '$title', '$details', '$itemID'");
         
          
$query = "replace into $topics values('$ID', '$title', '$details', '$itemID')";


          print(
"<br> $query");
          
          
$result=mysql_query($query) or die(mysql_error());

    
          
          if(
$result)
        {
          print(
"That worked :)");
          print(
"<META HTTP-EQUIV=\"Refresh\" CONTENT=\"1; URL=index.php3?mode=listTopics&superSession=$superSession\">");
        }

          else
        {
          print(
"Something has gone wrong here");
        }


        }

      else if(
$del)
        {
        
          require(
"$mysqlCall");
          
$query = "DELETE FROM $topics WHERE(Id=$ID)";
          
$insert = MYSQL_QUERY($query);
          
          
          if(
$insert)
        {
          print(
"that worked :)");
          
          print(
"<META HTTP-EQUIV=\"Refresh\" CONTENT=\"1; URL=index.php3?mode=listTopics&superSession=$superSession\">");
        }
          
          else
        {
          print(
"something wrong here :)");
        }
          

          
        }


      else if(
$edit)
        {
          
          print(
"<form enctype=\"multipart/form-data\" action=\"index.php3?mode=addTopic&superSession=$superSession&updateTopic=1&ID=$ID\" method=POST>");
          
          print(
"<table  border=0 cellpadding=3 cellspacing=0 >");
          print(
"<tr><td bgcolor=$border_colour align=center>");
          
          print(
"<table width=100% border=0 cellpadding=5 cellspacing=0 >");
          
          print(
"<tr>\n");
          print(
"<td bgcolor=$table_colour>Title</td>");
          print(
"<td bgcolor=$bgcolour><input type=text name='title' size=\"25\" value=\"$title\"></td>");
          print(
"</tr>\n");
          
          print(
"<tr>\n");
          print(
"<td bgcolor=$table_colour>Description</td>");
          print(
"<td bgcolor=$bgcolour><input type=text name='details' size=\"25\"  value=\"$info\"></td>");
          print(
"</tr>\n");


          print(
"<tr>\n");
          print(
"<td bgcolor=$table_colour>Image</td>");
          print(
"<td bgcolor=$bgcolour>");
          
          
genPullDown($images, $imageID);
          
          print(
"</td>");
          print(
"</tr>\n");


          print(
"<tr>\n");
          print(
"<td colspan=2 align=right bgcolor=$table_colour2><input type=submit></td>");
          print(
"</tr>\n");
          
          print(
"</table>");
          print(
"<tr><td>");
          print(
"</table>");
          print(
"<br><br>");
          print(
"</form>");

        }

      else
        {
          
          print(
"<form enctype=\"multipart/form-data\" action=\"index.php3?mode=addTopic&superSession=$superSession&addTopic=1\" method=POST>");
          
          print(
"<table  border=0 cellpadding=3 cellspacing=0 >");
          print(
"<tr><td bgcolor=$border_colour align=center>");
          
          print(
"<table width=100% border=0 cellpadding=5 cellspacing=0 >");
          
          print(
"<tr>\n");
          print(
"<td bgcolor=$table_colour>Title</td>");
          print(
"<td bgcolor=$bgcolour><input type=text name='title' size=\"25\" ></td>");
          print(
"</tr>\n");
          
          print(
"<tr>\n");
          print(
"<td bgcolor=$table_colour>Description</td>");
          print(
"<td bgcolor=$bgcolour><input type=text name='details' size=\"25\" ></td>");
          print(
"</tr>\n");


          print(
"<tr>\n");
          print(
"<td bgcolor=$table_colour>Image</td>");
          print(
"<td bgcolor=$bgcolour>");
          
genPullDown($images, $current);
          print(
"</td>");
          print(
"</tr>\n");


          print(
"<tr>\n");
          print(
"<td colspan=2 align=right bgcolor=$table_colour2><input type=submit></td>");
          print(
"</tr>\n");
          
          print(
"</table>");
          print(
"<tr><td>");
          print(
"</table>");
          print(
"<br><br>");
          print(
"</form>");
        }

    }
      else
    {
      print(
"You do no thave access to this function");
      
    }

      include(
"include/guiBase.inc.php3");

    }
  else
    {
      
/*  session is bad */
      
print("Bad Session ID ($superSession)!<BR>\n");
      
$superSession = "";
    }
  
  
?>




:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #16 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0036 ]--