MINI SHELL

Server : Apache/2.2.2 (Fedora)
System : Linux App1.pathumtani.go.th 2.6.20-1.2320.fc5smp #1 SMP Tue Jun 12 19:40:16 EDT 2007 i686
User : apache ( 48)
PHP Version : 5.2.9
Disable Function : NONE
Directory :  /var/www/html/warroom/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /var/www/html/warroom/checkcommand.php
<?
include "db.inc.php";
	mysql_select_db("eoffice_master") or die("Can't select database."); 
	$iresult = mysql_query("SET character_set_results=tis-620");
	$iresult = mysql_query("SET NAMES TIS620");
/*
MYSQL_CONNECT('sapphire01', 'root', 'sapphire') OR DIE("Unable to connect to database  ");
@mysql_select_db('immigrant_57') or die( "Unable to select database");
$iresult = mysql_query("SET character_set_results=tis-620");
$iresult = mysql_query("SET NAMES TIS620");
*/
echo "<?xml version=\"1.0\" encoding=\"tis-620\" ?>";
/*
echo "<imgfile>";
$dir = @opendir("incoming_images") ;
 while($file= @readdir($dir)){
	if (($file != ".") AND ($file != "..") AND($file != "Thumbs.db")AND($file != "backup")){
		if($_GET[id]<substr($file,0,-4)){
			echo "<img src=\"incoming_images/$file\"/>";
		}
	}
 }
echo "</imgfile>";
*/


echo "<imgfile>";
$sql = "select id as cid,image_id as id,status,comment,result from tbl_command where id = '$_GET[id]'  limit 1";
//echo $sql;
$rs = mysql_query($sql);
if(mysql_num_rows($rs)){
	$ar=mysql_fetch_assoc($rs);
	echo "<img id=\"$ar[cid]\" status=\"$ar[status]\" comment=\"$ar[comment]\" src=\"showpic.php?id=$ar[id]\" result=\"$ar[result]\"/>";
	if($ar[status]=='success' and $ar[result]>0){
		$sql2=" select * from tbl_result_recognition where cmd_id ='$_GET[id]' order by similar_percent DESC; ";
		$rs2= mysql_query($sql2);
		echo "<resut>";
		while($arr2=mysql_fetch_assoc($rs2)){
			echo "<match cmd_id='$arr2[cmd_id]' blacklist_id='$arr2[pers_pic_id]' similar_percent='$arr2[similar_percent]' picture_index='$arr2[picture_index]' />";
		}
		echo "</result>";
	}

}
echo "</imgfile>";

mysql_close($link);
?>

Anon7 - 2021