403Webshell
Server IP : 127.0.0.1  /  Your IP : 216.73.216.48
Web Server : Apache/2.4.58 (Win64) OpenSSL/3.1.3 PHP/8.2.12
System : Windows NT DESKTOP-3H4FHQJ 10.0 build 19045 (Windows 10) AMD64
User : win 10 ( 0)
PHP Version : 8.2.12
Disable Function : NONE
MySQL : OFF |  cURL : ON |  WGET : OFF |  Perl : OFF |  Python : OFF |  Sudo : OFF |  Pkexec : OFF
Directory :  D:/xampp/htdocs-coblaa/sn_re/

Upload File :
current_dir [ Writeable] document_root [ Writeable]

 

Command :


[ Back ]     

Current File : D:/xampp/htdocs-coblaa/sn_re/pay_water.php
<html>
<?php 
session_start();
include('db.php'); 
//include('function.php');
?>

<?php
if(isset($_SESSION['my_id']))
{
//$_SESSION['email']=$user_email;
$my_id = $_SESSION['my_id'];
//echo"$my_id";
}

if(isset($_GET['db_id6'])){
	$user_id = $_GET['db_id6'];
}
?>
<div style="display:none;">
<input type="text" id="my_id" class="helping_id" style="display:none;" value="<?php echo $my_id;?>"> 

 <?php
$user_ip = getenv('REMOTE_ADDR');
$geo = unserialize(file_get_contents("http://www.geoplugin.net/php.gp?ip=$user_ip"));
$city = $geo["geoplugin_city"];
$region = $geo["geoplugin_regionName"];
$country = $geo["geoplugin_countryName"];
/*echo"$user_ip";
echo "City: ".$city."<br>";
echo "Region: ".$region."<br>";
echo "Country: ".$country."<br>";
/*
geoplugin_request
geoplugin_status
geoplugin_credit
geoplugin_city
geoplugin_region
geoplugin_areaCode
geoplugin_dmaCode
geoplugin_countryCode
geoplugin_countryName
geoplugin_continentCode
geoplugin_latitude
geoplugin_longitude
geoplugin_regionCode
geoplugin_regionName
geoplugin_currencyCode
geoplugin_currencySymbol
geoplugin_currencySymbol_UTF8
geoplugin_currencyConverter
*/

$curr_day = date("d");
$curr_month = date("m");
$curr_year = date("Y");

?>

<input type="text" id="country_user" class="helping_id" style="display:none;" value="<?php echo $country;?>"> 
<input type="text" id="region_user" class="helping_id" style="display:none;" value="<?php echo $region;?>">
<input type="text" id="city_user" class="helping_id" style="display:none;" value="<?php echo $city;?>">
<input type="text" id="ip_user" class="helping_id" style="display:none;" value="<?php echo $user_ip;?>">

</div>

<head>

<title>sn real estate</title>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="stylesheet" type="text/css" href="main_css/pay_water.css" />

</head>

<body id="body">
<button onClick="history.back();" class="back_bnt" >Back</button>
<a href="logout_tenant"><button class="logout_btn" >Logout</button></a>
<?php 
//$select_tenant_receipt ="select * from";


?>

<div class="main_content_div" >

<div class="receipt_title_name" >SN REAL ESTATE</div>
<div class="receipt_title_location" >MAGERE</div>
<div class="receipt_title_contact" >TEL: +256751045153</div>
<div class="receipt_title_rent" >Pay Water Bill</div>
<form method="post">
<?php 

$get_sn_tenant_total = "select * from sn_tenanttb";
$run_get_sn_tenant_total = mysqli_query($con,$get_sn_tenant_total);
$check_tenant_total = mysqli_num_rows($run_get_sn_tenant_total);
//echo $check_tenant_total;

$get_sn_tenant = "select * from sn_tenanttb where id='$user_id'";
$run_sn_tenant= mysqli_query($con,$get_sn_tenant);

 while($row_get_sn_tenant = mysqli_fetch_array($run_sn_tenant))
  {
   $rented_sn_unit = $row_get_sn_tenant['rented_sn_unit'];
   $tenant_name = $row_get_sn_tenant['tenant_name'];
   
?>
<input name="rented_block" readOnly class="receipt_output_small_one" value="<?php echo"$rented_sn_unit"; ?>"/>
<!--input name="meter_reading_date" class="receipt_output_small_two" placeholder="Enter Date..."/-->

<select name="meter_reading_year" class="receipt_output_small_two" style="margin-right:5%;" >
<option>Year</option>
<option><?php echo $curr_year; ?></option>
</select>

<select name="meter_reading_month" class="receipt_output_small_two" >
<option>Month</option>
<option>Jan</option>
<option>Feb</option>
<option>Mar</option>
<option>Apr</option>
<option>May</option>
<option>Jun</option>
<option>Jul</option>
<option>Aug</option>
<option>Sep</option>
<option>Oct</option>
<option>Nov</option>
<option>Dec</option>
</select>

<select name="meter_reading_date" class="receipt_output_small_two" >
<option selected disabledk>Date</option>
<option>01</option>
<option>02</option>
<option>03</option>
<option>04</option>
<option>05</option>
<option>06</option>
<option>07</option>
<option>08</option>
<option>09</option>
<option>10</option>
<option>11</option>
<option>12</option>
<option>13</option>
<option>14</option>
<option>15</option>
<option>16</option>
<option>17</option>
<option>18</option>
<option>19</option>
<option>20</option>
<option>21</option>
<option>22</option>
<option>23</option>
<option>24</option>
<option>25</option>
<option>26</option>
<option>27</option>
<option>28</option>
<option>29</option>
<option>30</option>
<option>31</option>
</select>


<input name="tenant_name" readOnly class="receipt_output" value="<?php echo"$tenant_name"; ?>" />
<input name="paid_amount" class="receipt_output" placeholder="Amount..." />
<select name="for_the_month" class="receipt_output" placeholder="For The Month of:">
<option>Select a Month</option>
<option>January</option>
<option>February</option>
<option>March</option>
<option>April</option>
<option>May</option>
<option>June</option>
<option>July</option>
<option>August</option>
<option>September</option>
<option>October</option>
<option>November</option>
<option>December</option>
</select>

<?php  
if(isset($_POST['add_water_bill_btn'])){
$meter_reading_date = $_POST['meter_reading_date'];
$meter_reading_month = $_POST['meter_reading_month'];
$meter_reading_year = $_POST['meter_reading_year'];
$tenant_name = $_POST['tenant_name'];
$paid_amount = $_POST['paid_amount'];
$rented_block = $_POST['rented_block'];
$for_the_month = $_POST['for_the_month']; 

if($meter_reading_date=="Date" OR $meter_reading_month=="Month" OR $meter_reading_year=="Year" OR $paid_amount==""){
	echo"<div class='receipt_output' style='height:30px;line-height:30px;color:red;border:transparent;' >Fill All The Spaces</div>";
}else{
	
	$get_previous_reading ="select * from previous_meter_readingtb where user_id='$user_id' ";
    $run_previous_reading = mysqli_query($con,$get_previous_reading);
	while($row_previous_reading = mysqli_fetch_array($run_previous_reading)){
	//$for_the_month = $row_previous_reading['for_the_month'];
	$pending_amount = $row_previous_reading['pending_amount'];
	 //$total_used_units = $cur_meter_reading - $previous_m_reading;
	 $cur_pending_amount = $pending_amount - $paid_amount;
	 
    $update_previous_reading ="UPDATE previous_meter_readingtb SET pending_amount='$cur_pending_amount' where user_id='$user_id' ";
    $run_update_prev_reading = mysqli_query($con,$update_previous_reading); 	
	
    $insert_water_pay = "insert into sn_water_billingtb (my_id,user_id,tenant_name,meter_reading_date,paid_amount,calculated_amount,for_the_month_of,rented_block,pay_status,cur_citty,cur_counrty,cur_date,cur_time) 
    values('$my_id','$user_id','$tenant_name','$meter_reading_date/$meter_reading_month/$meter_reading_year','$paid_amount','$cur_pending_amount','$for_the_month','$rented_block','Paid','$city','$country',CURDATE(),CURTIME() )";
    $run_insert_water_pay = mysqli_query($con,$insert_water_pay);
    echo"<div class='receipt_output' style='height:30px;line-height:30px;color:green;border:transparent;' >New Water Bill Added, Thanks</div>";  
}
}
}
}
?>
<button name="add_water_bill_btn" class="main_dash" >Enter</button>
</form>

</div>




</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit