403Webshell
Server IP : 101.255.104.117  /  Your IP : 101.255.104.117
Web Server : Apache/2.4.34 (Win32) OpenSSL/1.0.2o PHP/5.6.38
System : Windows NT DESKTOP-5B8S0D4 6.2 build 9200 (Windows 8 Professional Edition) i586
User : user ( 0)
PHP Version : 5.6.38
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  D:/xampp182/htdocs/sifeeder/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : D:/xampp182/htdocs/sifeeder/nilaitransfer2.inc.php
<?php
$id = "";
$nama = "";
$hp = "";
$email = "";
$buton = "Simpan";
$u_pswd = "-";
$u_name = "-";
$hp = "-";
$ktp = "-";
$kota_asal = "-";
$alamat = "-";
$email = "-";
$nama = "-";
	include 'feeder_ws.php';

	token();


if(isset($_GET["deleteID"])) {
    $sql = "delete from login_sales where id = ".$_GET["deleteID"];
    if (mysqli_query($conn, $sql)) {
        echo "<script>window.alert('Data Sudah Terhapus');</script>";
    } else {
        echo "Error: " . $sql . "<br>" . mysqli_error($conn);
    }
}

if(isset($_GET["editID"])) {
	$sql = "SELECT * FROM login_sales where id = ".$_GET["editID"]." order by id desc";
	$result = mysqli_query($conn, $sql);

	if(mysqli_num_rows($result) > 0) {
        while($row = mysqli_fetch_assoc($result)) {
            $id = $row['id'];
            $nama = $row['nama'];
            $hp = $row['hp'];
            $email = $row['email'];
            $buton = "Koreksi";
        }
    }
}

function cariMHS($nim,$conn) {
	$sql = "SELECT * FROM f_riwayatpendidikanmahasiswa where nim = '".$nim."'";
	$result = mysqli_query($conn, $sql);
	$id_registrasi_mahasiswa = 0;

	if(mysqli_num_rows($result) > 0) {
        while($row = mysqli_fetch_assoc($result)) {
            $id_registrasi_mahasiswa = $row['id_registrasi_mahasiswa'];
        }
    }
	return $id_registrasi_mahasiswa;
}

function cariPT($kd_pt,$conn) {
	$sql = "SELECT * FROM f_pt where kode_perguruan_tinggi = '0".$kd_pt."' or kode_perguruan_tinggi = '".$kd_pt."'";
	$result = mysqli_query($conn, $sql);
	$id_perguruan_tinggi = 0;

	if(mysqli_num_rows($result) > 0) {
        while($row = mysqli_fetch_assoc($result)) {
            $id_perguruan_tinggi = $row['id_perguruan_tinggi'];
        }
    }
	return $id_perguruan_tinggi;
}

function cariMK($kode_mk,$conn) {
	$sql = "SELECT * FROM f_mk where kode_mata_kuliah = '".$kode_mk."'";
	$result = mysqli_query($conn, $sql);
	$id_matkul = 0;
	
	if(mysqli_num_rows($result) > 0) {
        while($row = mysqli_fetch_assoc($result)) {
            $id_matkul = $row['id_matkul'];
        }
    }
	return $id_matkul;
}

function cariSKS($kode_mk,$conn) {
	$sql = "SELECT * FROM f_mk where kode_mata_kuliah = '".$kode_mk."'";
	$result = mysqli_query($conn, $sql);
	$sks_mata_kuliah = 0;
	
	if(mysqli_num_rows($result) > 0) {
        while($row = mysqli_fetch_assoc($result)) {
            $sks_mata_kuliah = $row['sks_mata_kuliah'];
        }
    }
	return $sks_mata_kuliah;
}

if(isset($_GET["setaktif"])) {
    $setz = mysqli_query($conn, "update login_sales set aktif = 0");
    $sql = "update login_sales set aktif = 1 where id = ".$_GET["setaktif"];
    if (mysqli_query($conn, $sql)) {
        echo "<scrnamat>window.alert('Set Aktif');</scrnamat>";
    } else {
        echo "Error: " . $sql . "<br>" . mysqli_error($conn);
    }
}

if(isset($_POST["Clear"])) {
    $sql = "delete from rekap_nilai_tranfer where feeder = 1";
    $result = mysqli_query($conn, $sql);
}

if(isset($_POST["Transfer"])) {
	$sql = "SELECT * FROM rekap_nilai_tranfer where feeder = 0 order by ID asc";
	$result = mysqli_query($conn, $sql);

	if(mysqli_num_rows($result) > 0) {
        while($row = mysqli_fetch_assoc($result)) {
			$ff1 = $row['id_registrasi_mahasiswa'];
			$ff2 = $row['kode_mata_kuliah_asal'];
			$ff3 = $row['nama_mata_kuliah_asal'];
			$ff4 = $row['sks_mata_kuliah_asal'];
			$ff5 = $row['nilai_huruf_asal'];
			$ff6 = $row['id_matkul'];
			$ff7 = $row['sks_mata_kuliah_diakui'];
			$ff8 = $row['nilai_huruf_diakui'];
			$ff9 = $row['nilai_angka_diakui'];
			$ff10 = $row['id_perguruan_tinggi'];
			$ff11 = $row['id_semester'];

			$feeder_token = $_SESSION['feeder_token'];

			$sync['act']="InsertNilaiTransferPendidikanMahasiswa";
			$sync['token']=$feeder_token;
			$sync['record']=[
				"id_registrasi_mahasiswa"=>$ff1,
				"kode_mata_kuliah_asal"=>$ff2,
				"nama_mata_kuliah_asal"=>$ff3,
				"sks_mata_kuliah_asal"=>$ff4,
				"nilai_huruf_asal"=>$ff5,
				"id_matkul"=>$ff6,
				"sks_mata_kuliah_diakui"=>$ff7,
				"nilai_huruf_diakui"=>$ff8,
				"nilai_angka_diakui"=>$ff9,
				"id_semester"=>$ff11,
				"id_perguruan_tinggi"=>$ff10
			];

			$json_array = runWs($sync);
			$jsonn = json_decode($json_array,true);

			$sql2 = "update rekap_nilai_tranfer set status = '".$json_array."' where ID = ".$row['ID'];
			$result2 = mysqli_query($conn, $sql2);
			// echo $json_array;
			if(count($jsonn['data']) >= 1) {
					$sql3 = "update rekap_nilai_tranfer set feeder = 1 where ID = ".$row['ID'];
					$result3 = mysqli_query($conn, $sql3);
			}
		}
	}

}

if(isset($_POST["Upload"])) {
	require_once('vendor/php-excel-reader/excel_reader2.php');
	require_once('vendor/SpreadsheetReader.php');
	$allowedFileType = ['application/vnd.ms-excel','text/xls','text/xlsx','application/vnd.openxmlformats-officedocument.spreadsheetml.sheet'];

	if(in_array($_FILES["file"]["type"],$allowedFileType)){
		//nanti buat juga folder uploads pada projek kalian masing - masing
		$targetPath = 'uploads/rekap/'.$_FILES['file']['name'];
		move_uploaded_file($_FILES['file']['tmp_name'], $targetPath);
		
		$Reader = new SpreadsheetReader($targetPath);
		$no = 0;
		
		foreach ($Reader as $Row)
		{
			if(strlen($Row[0]) > 5) {
				$no = ($no+1);
				$nim[$no] = $Row[0];
				
				$id_registrasi_mahasiswa = cariMHS($Row[0],$conn);
				$id_perguruan_tinggi = cariPT($Row[12],$conn);
				$id_matkul = cariMK($Row[6],$conn);
				$sks_mata_kuliah_diakui = cariSKS($Row[6],$conn);
				$tbField[0] = "nim";
				$tbField[1] = "nama";
				$tbField[2] = "kode_mata_kuliah_asal";
				$tbField[3] = "nama_mata_kuliah_asal";
				$tbField[4] = "sks_mata_kuliah_asal";
				$tbField[5] = "nilai_huruf_asal";
				$tbField[6] = "kode_mk";
				$tbField[7] = "nm_mk";
				$tbField[8] = "nilai_huruf_diakui";
				$tbField[9] = "nilai_angka_diakui";
				$tbField[10] = "kd_prodi";
				$tbField[11] = "id_semester";
				$tbField[12] = "kd_pt";
				$tbField[13] = "id_matkul";
				$tbField[14] = "id_perguruan_tinggi";
				$tbField[15] = "id_registrasi_mahasiswa";
				$tbField[16] = "sks_mata_kuliah_diakui";

				$tbIsi[0] = "'".$Row[0]."'";
				$tbIsi[1] = "'".addslashes($Row[1])."'";
				$tbIsi[2] = "'".$Row[2]."'";
				$tbIsi[3] = "'".$Row[3]."'";
				$tbIsi[4] = "'".$Row[4]."'";
				$tbIsi[5] = "'".$Row[5]."'";
				$tbIsi[6] = "'".$Row[6]."'";
				$tbIsi[7] = "'".$Row[7]."'";
				$tbIsi[8] = "'".$Row[8]."'";
				$tbIsi[9] = "'".$Row[9]."'";
				$tbIsi[10] = "'".$Row[10]."'";
				$tbIsi[11] = "'".$Row[11]."'";
				$tbIsi[12] = "'".$Row[12]."'";
				$tbIsi[13] = "'".$id_matkul."'";
				$tbIsi[14] = "'".$id_perguruan_tinggi."'";
				$tbIsi[15] = "'".$id_registrasi_mahasiswa."'";
				$tbIsi[16] = "'".$sks_mata_kuliah_diakui."'";
				
				// echo $no.". ".$Row[0]." | ".$Row[1]." | ".$Row[2]." | ".$Row[3]." | ".$Row[4]." | ".$Row[5]." | ".$Row[6]." | ".$Row[7]." | ".$Row[8]." | ".$Row[9]." | ".$Row[10]." | ".$Row[11]." | ".addslashes($Row[12])." <br> ";

				$nmField = compile_array($tbField);
				$isiField = compile_array($tbIsi);

				$sql = "insert into rekap_nilai_tranfer (".$nmField.") values (".$isiField.")";

				$notif = $ssm;
				if($no == 1 || ($nim[$no] != $nim[$no-1])) {
					if (mysqli_query($conn, $sql)) {
						// echo "<script>window.alert('".$notif."');</script>";
					} else {
						echo "Error: " . $sql . "<br>" . mysqli_error($conn);
					}
				}
			}
		}
	}
}

if(isset($_POST["Simpan"]) || isset($_POST["Koreksi"])) {
	if(isset($_POST["hp"])) $hp = $_POST["hp"];
	if(isset($_POST["email"])) $email = $_POST["email"];
	if(isset($_POST["nama"])) $nama = $_POST["nama"];
	if(isset($_POST["id"])) $id = $_POST["id"];
	if(isset($_POST["alamat"])) $alamat = $_POST["alamat"];
	if(isset($_POST["kota_asal"])) $kota_asal = $_POST["kota_asal"];
	if(isset($_POST["ktp"])) $ktp = $_POST["ktp"];
	if(isset($_POST["u_name"])) $u_name = $_POST["u_name"];
	if(isset($_POST["u_pswd"])) $u_pswd = $_POST["u_pswd"];

	$tbField[0] = "nama";
	$tbField[1] = "hp";
	$tbField[2] = "email";
	$tbField[3] = "alamat";
	$tbField[4] = "kota_asal";
	$tbField[5] = "ktp";
	$tbField[6] = "u_name";
	$tbField[7] = "u_pswd";

	$tbIsi[0] = "'".$nama."'";
	$tbIsi[1] = "'".$hp."'";
	$tbIsi[2] = "'".$email."'";
	$tbIsi[3] = "'".$alamat."'";
	$tbIsi[4] = "'".$kota_asal."'";
	$tbIsi[5] = "'".$ktp."'";
	$tbIsi[6] = "'".$u_name."'";
	$tbIsi[7] = "'".$u_pswd."'";

	if(isset($_POST["Simpan"])) {
		$nmField = compile_array($tbField);
		$isiField = compile_array($tbIsi);

        $sql = "insert into login_sales (".$nmField.") values (".$isiField.")";

		$notif = $ssm;
	}
	if(isset($_POST["Koreksi"])) {
		$compileSet = compile_array2($tbField,$tbIsi);
        $sql = "update login_sales set ".$compileSet." where id = ".$id;

        $notif = $sum;
	}

    if (mysqli_query($conn, $sql)) {
        echo "<script>window.alert('".$notif."');</script>";
    } else {
        echo "Error: " . $sql . "<br>" . mysqli_error($conn);
    }
}
?>
<?php if(isset($_GET["editID"])) { ?>
<div class="container-fluid">
    <div class="card shadow mb-4">
        <div class="card-header py-3">
            <h6 class="m-0 font-weight-bold text-primary">Entry Data </h6>
        </div>
        <div class="card-body">
<form class="user" action="dashboard.php?nilaitransfer2" accept-charset="utf-8" method="post">


<div class="col m6">
    <div class="row">
        <div class="input-field col m6 s12">
            <table border="0" width="100%" cellspacing="1" cellpadding="1">
                <tr>
                    <td width="30%">Nama</td>
                    <td width="70%">
                        <input value="<?php echo $id;?>" name="id" type="hidden">
                        <input value="<?php echo $nama;?>" name="nama" type="text" class="form-control" id="exampleFirstName" placeholder="Username Feeder">
                    </td>
                </tr>
                <tr>
                    <td>No Handphone</td>
                    <td>
                        <input value="<?php echo $hp;?>" name="hp" type="text" class="form-control" id="hp" placeholder="">
                    </td>
                </tr>
                <tr>
                    <td>E-mail</td>
                    <td>
                        <input value="<?php echo $email;?>" name="email" type="text" class="form-control" id="var" placeholder="nama periode masuk">
                    </td>
                </tr>
                <tr>
                    <td>Alamat</td>
                    <td>
                        <input value="<?php echo $alamat;?>" name="alamat" type="text" class="form-control" id="var" placeholder="nama periode masuk">
                    </td>
                </tr>
                <tr>
                    <td>Kota Asal</td>
                    <td>
                        <input value="<?php echo $kota_asal;?>" name="kota_asal" type="text" class="form-control" id="kota_asal" placeholder="">
                    </td>
                </tr>
                <tr>
                    <td>KTP</td>
                    <td>
                        <input value="<?php echo $ktp;?>" name="ktp" type="text" class="form-control" id="ktp" placeholder="">
                    </td>
                </tr>
                <tr>
                    <td>Username</td>
                    <td>
                        <input value="<?php echo $u_name;?>" name="u_name" type="text" class="form-control" id="u_name" placeholder="">
                    </td>
                </tr>
                <tr>
                    <td>Password</td>
                    <td>
                        <input value="<?php echo $u_pswd;?>" name="u_pswd" type="text" class="form-control" id="u_pswd" placeholder="">
                    </td>
                </tr>
                <tr>
                    <td>&nbsp;</td>
                    <td>
                                <div class="form-group row">
                                    <div class="col-sm-3 mb-3 mb-sm-0">
                                        <button name="<?php echo $buton;?>" type="submit" class="btn btn-primary btn-block"><?php echo $buton;?></button>
                                    </div>
                                    <div class="col-sm-3">
                                        <button name="Cancel" type="submit" class="btn btn-primary btn-block">Cancel</button>
                                    </div>
                                </div>
                    </td>
                </tr>
            </table>
        </div>
    </div>
    </div>
</div>
</div>
</div>
</form>

<?php }else{ ?>
<!--div class="container-fluid">
    <div class="card shadow mb-4">
        <div class="card-header py-3">
            <h6 class="m-0 font-weight-bold text-primary">Entry Data </h6>
        </div>
        <div class="card-body">
<form class="user" action="dashboard.php?nilaitransfer2" accept-charset="utf-8" method="post" name="frmExcelImport" id="frmExcelImport" enctype="multipart/form-data">


<div class="col m6">
    <div class="row">
        <div class="input-field col m6 s12">
            <table border="0" width="100%" cellspacing="1" cellpadding="1">
                <tr>
                    <td width="30%">File Excel</td>
                    <td width="70%">
                        <input value="<?php echo $id;?>" name="id" type="hidden">
                        <input name="file" type="file" accept=".xls,.xlsx" class="form-control" id="exampleFirstName" placeholder="Username Feeder">
                    </td>
                </tr>
                <tr>
                    <td>&nbsp;</td>
                    <td>
                                <div class="form-group row" style="margin-top : 5pt;">
                                    <div class="col-sm-3 mb-3 mb-sm-0">
                                        <button name="Upload" type="submit" class="btn btn-primary btn-block">Upload</button>
                                    </div>
                                    <div class="col-sm-3">
                                        <button name="Clear" type="submit" class="btn btn-primary btn-block">Clear All</button>
                                    </div>
                                    <div class="col-sm-3">
                                        <button name="Cancel" type="submit" class="btn btn-primary btn-block">Cancel</button>
                                    </div>
                                    <div class="col-sm-3">
                                        <button name="Contoh" type="button" onclick="window.open('uploads/test.xlsx');" class="btn btn-primary btn-block">Contoh</button>
                                    </div>
                                </div>
                    </td>
                </tr>
            </table>
        </div>
    </div>
    </div>
</div>
</div>
</div-->
<?php } ?>
<div class="container-fluid">

<!-- Page Heading -->

                    <!-- DataTales Example -->
                    <div class="card shadow mb-4">
                        <div class="card-header py-3">
                            <h6 class="m-0 font-weight-bold text-primary">Rekap Nilai Transfer Neo Feeder</h6>
                        </div>
                        <div class="card-body">
                            <div class="table-responsive">
                                <table class="table table-bordered" id="dataTable" width="100%" cellspacing="0">
                                    <thead>
                                        <tr>
                                            <!--th>Aksi</th-->
                                            <th>NO</th>
                                            <th>NIM</th>
                                            <th>Nama</th>
                                        </tr>
                                    </thead>
                                    <tfoot>
                                        <tr>
                                            <!--th>Aksi</th-->
                                            <th>NO</th>
                                            <th>NIM</th>
                                            <th>Nama</th>
                                        </tr>
                                    </tfoot>
                                    <tbody>
                                        <?php
	$sql = "SELECT * FROM rekap_nilai_tranfer order by ID desc";
	$result = mysqli_query($conn, $sql);
	$no = 0;

	if(mysqli_num_rows($result) > 0) {
        while($row = mysqli_fetch_assoc($result)) {
			$no = ($no+1);
                                        ?>
                                        <tr>
                                            <!--td>
                                                <a class="btn btn-primary btn-danger" href="dashboard.php?nilaitransfer2&deleteID=<?php echo $row['id'];?>"><i class="fas fa-trash"></i></a>
                                                <a class="btn btn-primary btn-warning" href="dashboard.php?nilaitransfer2&editID=<?php echo $row['id'];?>"><i class="fas fa-edit"></i></a>
                                            </td-->
                                            <td><?php echo $no;?></td>
                                            <td><?php echo $row['nim'];?></td>
                                            <td><?php echo $row['nama'];?></td>
                                        </tr>
                                        <?php
        }
    }
                                        ?>
                                    </tbody>
                                </table>
                                </div>
								<hr>
								
                            </div>
                        </div>
                    </div>
</form>


Youez - 2016 - github.com/yon3zu
LinuXploit