403Webshell
Server IP : 127.0.0.1  /  Your IP : 216.73.216.48
Web Server : Apache/2.4.58 (Win64) OpenSSL/3.1.3 PHP/8.2.12
System : Windows NT DESKTOP-3H4FHQJ 10.0 build 19045 (Windows 10) AMD64
User : win 10 ( 0)
PHP Version : 8.2.12
Disable Function : NONE
MySQL : OFF |  cURL : ON |  WGET : OFF |  Perl : OFF |  Python : OFF |  Sudo : OFF |  Pkexec : OFF
Directory :  D:/xampp/htdocs-coblaa/social/

Upload File :
current_dir [ Writeable] document_root [ Writeable]

 

Command :


[ Back ]     

Current File : D:/xampp/htdocs-coblaa/social/settings.php
<html>

<?php
include('db.php');
session_start();
?>

<head>
<title>craneblue</title>
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="stylesheet" type="text/css" href="main_css/settings.css" />
</head>


<body >

<?php

if(isset($_SESSION['id']))
{
		$my_id = $_SESSION['id'];

}

?>

<input type="text" id="my_id" value="<?php echo"$my_id";?>" style="display:none;" />

<?php
$user_ip = getenv('REMOTE_ADDR');
$geo = unserialize(file_get_contents("http://www.geoplugin.net/php.gp?ip=$user_ip"));
$city = $geo["geoplugin_city"];
$country = $geo["geoplugin_countryName"];
//echo" mmm $user_ip";

?>
<input type="text" id="user_ip" value="<?php echo"$user_ip";?>" style="display:none;" />
<input type="text" id="user_city" value="<?php echo"$city";?>" style="display:none;" />
<input type="text" id="user_country" value="<?php echo"$country";?>" style="display:none;" />

<div class="home_header_area" >

<div class="home_main_title" >craneblue</div>



<!--a href="upload_kvt.php" ><button >Upload</button></a-->

<div class="menu_area_helping_div">

<img onclick="history.back();" id="cancel_menu_icon" src="main_icons/cancel_menu_icon.png" class="cancel_menu_icon" />

</div>

</div>

<div class="home_header_postion"></div>


<?php 
if(isset($_GET['edit_profile']))
{

?>

<div id='shell_main_div_edit_profile' class="shell_main_div" stylek="display:block;backgroundk:red;" >

<!--button onClick="close_shell_main_div_edit_profile();" class="close_shell_main_div">X</button-->

<div class="upload_banner" >

<div class="upload_banner_title" >Edit Profile Image</div>

<form method="post" enctype="multipart/form-data" >
<input type="file" onchange="edit_profile_now();" id="edit_file_profile" style="display:none;" />
</form>

<button onClick='document.getElementById("edit_file_profile").click();' class="select_banner_btn" >Select Profile Image</button>
<div id="upload_profile_erorr_output" ></div>

</div>

<script>

function edit_profile_now()
{


    my_id = document.getElementById('my_id').value;
	new_file = document.getElementById('edit_file_profile').files[0];
	file_name = new_file.name;
	file_type = new_file.type;
	file_size = new_file.size;

	if(file_type !=='image/jpeg'){
		

	document.getElementById('upload_banner_erorr_output').innerHTML="File Format Not Supported";
	
	}else{

	var formdata = new FormData();
	formdata.append('edit_file_profile',new_file);
	
	ajax = new XMLHttpRequest();
	ajax.addEventListener("load", completeHandler, false);
	ajax.open("POST","auto_page.php?my_id="+my_id+"&&status=update_profile_edit");

	ajax.send(formdata);
	
	document.getElementById('edit_file_profile').value="";

	
	//document.getElementById('file_uploading_progress').style.display="block";	

	function completeHandler()
	{
	
	document.getElementById('shell_main_div_edit_profile').style.display="none";
	window.open('studio.php','_self');
	}	
	}
}


</script>

</div>


<?php exit(); } ?>



<?php 
if(isset($_GET['upload_profile']))
{

?>

<div id='shell_profile_div' class="shell_main_div" stylek="display:block;" >

<!--button onClick="close_shell_main_div__profile();" class="close_shell_main_div">X</button-->

<div class="upload_banner" >

<div class="upload_banner_title" >Upload Profile Image</div>

<form method="post" enctype="multipart/form-data" >
<input type="file" onchange="upload_profile_now();" id="input_file_profile" style="display:none;" />
</form>

<button onClick='document.getElementById("input_file_profile").click();' class="select_banner_btn" >Select Profile Image</button>
<div id="upload_profile_erorr_output" ></div>

</div>

<script>


function upload_profile_now()
{

    my_id = document.getElementById('my_id').value;
	new_file = document.getElementById('input_file_profile').files[0];
	file_name = new_file.name;
	file_type = new_file.type;
	file_size = new_file.size;

	if(file_type !=='image/jpeg'){
		

	document.getElementById('upload_banner_erorr_output').innerHTML="File Format Not Supported";
	
	}else{

	var formdata = new FormData();
	formdata.append('input_file_profile',new_file);
	
	ajax = new XMLHttpRequest();
	ajax.addEventListener("load", completeHandler, false);
	ajax.open("POST","auto_page.php?my_id="+my_id+"&&status=upload_profile_insert");

	ajax.send(formdata);
	
	document.getElementById('input_file_profile').value="";

	
	//document.getElementById('file_uploading_progress').style.display="block";	

	function completeHandler()
	{
	
	document.getElementById('shell_profile_div').style.display="none";
	window.open('studio.php','_self');
	}	
	}
}

</script>

</div>


<?php exit(); } ?>


<?php 
if(isset($_GET['edit_banner']))
{

?>


<div id='shell_banner_div_edit' class="shell_main_div" >

<!--button onClick="close_shell_banner_div_edit();" class="close_shell_main_div">X</button-->

<div class="upload_banner" >

<div class="upload_banner_title" >Change Banner Image</div>

<form method="post" enctype="multipart/form-data" >
<input type="file" onchange="edit_banner_now();" id="input_file_banner_edit" style="display:none;" />
</form>

<button onClick='document.getElementById("input_file_banner_edit").click();' class="select_banner_btn" >Select Banner Image</button>
<div id="update_banner_erorr_output" ></div>

</div>

<script>

function edit_banner_now()
{

    my_id = document.getElementById('my_id').value;
	new_file = document.getElementById('input_file_banner_edit').files[0];
	file_name = new_file.name;
	file_type = new_file.type;
	file_size = new_file.size;

	if(file_type !=='image/jpeg'){
		

	document.getElementById('update_banner_erorr_output').innerHTML="File Format Not Supported";
	
	}else{

	var formdata = new FormData();
	formdata.append('input_file_banner_edit',new_file);
	
	ajax = new XMLHttpRequest();
	ajax.addEventListener("load", completeHandler, false);
	ajax.open("POST","auto_page.php?my_id="+my_id+"&&status=update_banner_edit");

	ajax.send(formdata);
	
	document.getElementById('input_file_banner_edit').value="";

	
	//document.getElementById('file_uploading_progress').style.display="block";	

	function completeHandler()
	{

	document.getElementById('shell_banner_div_edit').style.display="none";
	window.open('studio.php','_self');
	}	
	}
}
</script>

</div>


<?php  exit(); } ?>


<?php 
if(isset($_GET['upload_banner']))
{

?>

<div id='shell_main_div_banner' class="shell_main_div" stylek="display:block;" >

<!--button onClick="close_shell_main_div_banner();" class="close_shell_main_div">X</button-->

<div class="upload_banner" >

<div class="upload_banner_title" >Upload Banner Image</div>

<form method="post" enctype="multipart/form-data" >
<input type="file" onchange="upload_banner_now();" id="input_file_banner" style="display:none;" />
</form>

<button onClick='document.getElementById("input_file_banner").click();' class="select_banner_btn" >Select Banner Image</button>
<div id="upload_banner_erorr_output" ></div>

</div>

<script>

function upload_banner_now()
{

    my_id = document.getElementById('my_id').value;
	new_file = document.getElementById('input_file_banner').files[0];
	file_name = new_file.name;
	file_type = new_file.type;
	file_size = new_file.size;

	if(file_type !=='image/jpeg'){
		

	document.getElementById('upload_banner_erorr_output').innerHTML="File Format Not Supported";
	
	}else{

	var formdata = new FormData();
	formdata.append('input_file_banner',new_file);
	
	ajax = new XMLHttpRequest();
	ajax.addEventListener("load", completeHandler, false);
	ajax.open("POST","auto_page.php?my_id="+my_id+"&&status=upload_banner_insert");

	ajax.send(formdata);
	
	document.getElementById('input_file_banner').value="";

	
	//document.getElementById('file_uploading_progress').style.display="block";	

	function completeHandler()
	{
	
	document.getElementById('shell_main_div_banner').style.display="none";
	window.open('studio.php','_self');
	}	
	}
}


</script>

</div>


<?php  exit(); } ?>


<?php 
if(isset($_GET['general'])){
	$generalk = $_GET['general'];
	///echo"$generalk";

?>

<div id="general_div" class="general_div" >
<div class="acc_detail_title" >User Details</div>
<div id="user_display_output"></div>


</div><!--end of general_div-->

<?php } ?>

<script>
show_general_area();
function show_general_area()
{ 
document.getElementById('general_div').style.display="block";

  my_id = document.getElementById('my_id').value;

  xmlhttp = new XMLHttpRequest();
  xmlhttp.open("GET","auto_page.php?my_id="+my_id+"&status=display_user",false);
  xmlhttp.send(null);

  document.getElementById('user_display_output').innerHTML =xmlhttp.responseText;


}



</script>

<?php 
if(isset($_GET['change_pass'])){
	$gene = $_GET['change_pass'];

	?>
	
<div class="change_pass_div">
<div class="change_pass_title" >Change Your Password</div>

<input type="password" id="old_pass_input" class="change_pass_input" placeholder="Enter Old Password"  />
<input type="text" id="old_pass_input_preview" class="change_pass_input" style="display:none;"  />

<input type="password" id="new_pass_input" class="change_pass_input" placeholder="Enter New Password"  />
<input type="text" id="new_pass_input_preview" class="change_pass_input" style="display:none;"  />

<input type="password" id="confrim_pass_input" class="change_pass_input" placeholder="Confrim Password"  />
<input type="text" id="confrim_pass_input_preview" class="change_pass_input" style="display:none;"  />

<div id="change_pass_error_output" class="change_pass_error_output" ></div>
<button id="change_pass_save_btn" onClick="change_pass_save();" class="change_pass_save_btn">Save</button>
<button id="preview_pass_btn" onClick="preview_pass();" class="preview_pass_btn">show</button>
<button id="hide_pass_btn" onClick="hide_pass();" style="display:none;" class="preview_pass_btn">hide</button>

<script>

function preview_pass()
{

	document.getElementById('preview_pass_btn').style.display="none";
	document.getElementById('hide_pass_btn').style.display="block";
	


document.getElementById('old_pass_input').type="text";
document.getElementById('new_pass_input').type="text";
document.getElementById('confrim_pass_input').type="text";



}

function hide_pass()
{
	document.getElementById('old_pass_input').type="password";
	document.getElementById('new_pass_input').type="password";
	document.getElementById('confrim_pass_input').type="password";

	
	document.getElementById('preview_pass_btn').style.display="block";
	document.getElementById('hide_pass_btn').style.display="none";
}

function change_pass_save()
{
	my_id = document.getElementById('my_id').value;
	old_pass = document.getElementById('old_pass_input').value;
	new_pass = document.getElementById('new_pass_input').value;
	confrim_pass = document.getElementById('confrim_pass_input').value;
	
		if(old_pass =="" || new_pass =="" || confrim_pass ==""){
		document.getElementById('change_pass_error_output').style="color:red;";
		document.getElementById('change_pass_error_output').innerHTML="Fill All The Fields ";
		}else if(new_pass !== confrim_pass){
		document.getElementById('change_pass_error_output').style="color:red;";
		document.getElementById('change_pass_error_output').innerHTML="Your Password Does Not Match ";
		}else{
	
  xmlhttp = new XMLHttpRequest();
  xmlhttp.open("GET","auto_page.php?my_id="+my_id+"&&old_pass="+old_pass+"&&new_pass="+new_pass+"&&status=change_password",false);
  xmlhttp.send(null);
  
  document.getElementById('change_pass_error_output').style="color:green;";
  document.getElementById('change_pass_error_output').innerHTML=xmlhttp.responseText;

  	document.getElementById('old_pass_input').value="";
	document.getElementById('new_pass_input').value="";
	document.getElementById('confrim_pass_input').value="";
	
		}

}

</script>

	
</div>
	
	<?php
}

?>








</body>


</html>

Youez - 2016 - github.com/yon3zu
LinuXploit