!C99Shell v. 1.0 pre-release build #16!

Software: Apache/2.0.54 (Fedora). PHP/5.0.4 

uname -a: Linux mina-info.me 2.6.17-1.2142_FC4smp #1 SMP Tue Jul 11 22:57:02 EDT 2006 i686 

uid=48(apache) gid=48(apache) groups=48(apache)
context=system_u:system_r:httpd_sys_script_t
 

Safe-mode: OFF (not secure)

/home/mnnews/public_html/mina/test/admin/   drwxr-xr-x
Free 3.89 GB of 27.03 GB (14.4%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     listNews.inc.php3 (4.14 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?


   


  
if(checkSuperSession($superSession, $REMOTE_ADDR))


    {





      include(
"include/rootGui.inc.php3");


      


      require(
"$mysqlCall");


     


      
$userId = getUserSUId($superSession);


      
$userInfo = getUserInfo($userId);





      if((
$userInfo[SuperUser] == 1) && ($userInfo[manageNews]==1) && ($userInfo[active]==1))


    {


      
$query = sqlQuery($seg, $news);


    


      
$mysql_result = mysql_query($query, $mysql_link);


          


      
$rows=countRows($news);


      


      if(
$rows>0)


        {


          
navGen($seg, $news, "index.php3?mode=listNews&superSession=$superSession");


        }


      


      while(
$row2 = mysql_fetch_row($mysql_result))


        {


          
$item_ID =      $row2[0];


          
$item_title =       $row2[1];


          
$item_details =     $row2[2];


          
$item_date =       $row2[3];


          
$item_topic =       $row2[4];


          
$userId =       $row2[5];
          
$item_slag =       $row2[6];
          
$item_imageID=$row2[7];


          


    


          if(
$item_topic != 0)


        {





          require(
"$mysqlCall");


          


          
$query = "SELECT * FROM $news  where Id=\"$item_ID\"";


          


          
$mysql_result2 = mysql_query($query, $mysql_link);


          


          if(
$row = mysql_fetch_row($mysql_result2))


            {


             


            }


          else


            {


              print(
"Doslo je do greske<br>");


            }


        }


      


          
$userInfo = getUserInfo($userId);





      


          print(
"<table width=70% border=0 cellpadding=3 cellspacing=0 >");


          print(
"<tr><td bgcolor=$border_colour align=center>");





          print(
"<table width=100% border=0 cellpadding=5 cellspacing=0 >");


          


          
printf("<tr>\n");


          


          print(
"<td bgcolor=$table_colour2 width=100% colspan=2>\n");


          print(
"<b>$item_date</b>\n");


          print(
"Unio <a href=\"mailto:$userInfo[email]\" class=\"navigation\">$userInfo[user]</a>\n");


          print(
"</td>");


          


          print(
"<td rowspan=2 bgcolor=$table_colour >");


          


          print(
"<form method=\"post\" action=\"index.php3?mode=delNews&superSession=$superSession&newsId=$item_ID\">");


          print(
"<input type=submit value=Obrisi></form>");








          print(
"<form method=\"post\" action=\"index.php3?mode=editNews&superSession=$superSession&newsId=$item_ID\">");


          print(
"<input type=submit value=Edituj></form>");


          


          print(
"</td>");


          


          
printf("</tr>\n");


          
printf("<tr>\n");


          


          print(
"<td bgcolor=$bgcolour>\n");
          

$prazno=nl2br($item_details);

          print(
"<h1><u>$item_title</u></h1>\n");
            print(
"<div align=\"justify\"><p>$item_slag\n</p></div>");


          print(
"<div align=\"justify\"><p><img align=\"left\" border=\"1\" src=\"imageShow.php3?id=$item_imageID\">$prazno\n</p></div>");


          print(
"</td>\n");


        


          if(
$item_topic != 0)


        {


          


          print(
"<td bgcolor=$bgcolour align=right>\n");


        


          print(
"</td>\n");


          


        }





          else


        {


          print(
"<td bgcolor=$bgcolour align=right>\n");


        


          print(
"</td>\n");





        }





      


          print(
"</tr>\n");


          print(
"</table>");


          print(
"<tr><td>");


          print(
"</table>");


          print(
"<br><br>");


        }





      if(
$rows>0)


        {


          
navGen($seg, $news, "index.php3?mode=listNews&superSession=$superSession");


        }


      


      else


        {


          print(
"Nema informacija");


        }


    }


      


    


      else


    {


      


      print(
"Nemate pristup ovoj funkciji");


      


    }





      include(
"include/guiBase.inc.php3");


      


    }


  


  else


    {


      
//session is bad


      
print("Pogresna sesija ID ($session)!<BR>\n");


      
$superSession = "";


    }


  


?>























:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #16 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0033 ]--