403Webshell
Server IP : 109.234.162.214  /  Your IP : 216.73.216.34
Web Server : Apache
System : Linux servd162214.srv.odns.fr 4.18.0-372.26.1.lve.1.el8.x86_64 #1 SMP Fri Sep 16 14:08:19 EDT 2022 x86_64
User : carpe ( 1178)
PHP Version : 8.0.30
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/carpe/public_html/MuletVsFondation/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/carpe/public_html/MuletVsFondation//login.php
<?php
session_start();

$serveur = "localhost";
$utilisateur = "carpe_php";
$mot_de_passe = "onestdestubesonestpasdespots"; 
$base_de_donnees = "carpe_mulet"; 

$mysqli = mysqli_connect($serveur, $utilisateur, $mot_de_passe, $base_de_donnees);
    

echo "<form method='post' action='login.php'><label>LOGIN : </label><label>Connexion : </label><input type='text' name='username' required><label>Mot de passe : </label><input type='password' name='password' required><input type='submit' name='login_send'></form>";
echo "<form method='post' action='login.php'><label>SIGN IN : </label><label>Inscription : </label><input type='text' name='username' required><label>Mot de passe : </label><input type='password' name='password' required><input type='submit' name='signin_send'></form>";

$error=0;

if(isset($_POST['login_send'])){
    
    
    $select = "SELECT * FROM users";
    $result_select = mysqli_query($mysqli,$select);
    if (mysqli_num_rows($result_select) > 0) {
        while ($ligne=mysqli_fetch_array($result_select)){
        	$username = addslashes($ligne["username"]);
        	$password = addslashes($ligne["password"]);
        	if($_POST['username'] == $username AND password_verify($_POST['password'], $password)){
        	    $_SESSION['login']= $username;
        	    header("Location: univers.php");
        	}else{
        	    $error ++;
        	    
        	}
        }
    }
}

if($error>0){
    echo "Mot de passe et/ou nom d'utilisateur incorrect";
}

include 'personne.php';
include 'vaisseaux.php';

$vaisseauxArray = array_map(function($vaisseau) {
    return $vaisseau->toArray();
}, $vaisseaux);





foreach($personnes as $value){
    //$value->sePresenter();
    //echo "<br/>";
}

$personnesArray = array_map(function($personne) {
    return $personne->toArray();
}, $personnes);

shuffle($personnesArray);
$elementsAleatoires = array_slice($personnesArray, 0, 5);




$error2 = 0;

if(isset($_POST['signin_send'])){
    $username = addslashes($_POST['username']);
    $password1 = addslashes($_POST['password']);
    $password = password_hash($password1, PASSWORD_DEFAULT);
    $insert = "INSERT INTO `users`(`username`, `password`,`jour`) VALUES ('$username','$password','1')";
    
    
    $select = "SELECT * FROM users";
    $result_select = mysqli_query($mysqli,$select);
    if (mysqli_num_rows($result_select) > 0) {
        while ($ligne=mysqli_fetch_array($result_select)){
        	$username1 = addslashes($ligne["username"]);
        	if($username1 == $_POST['username']){
        	    $error2++;
        	}else{

        	}
        }
    }
    if($error2<1){
        $result_insert = mysqli_query($mysqli,$insert);
        $_SESSION['login']= $username;
        header("Location: univers.php");
        
        $select2 = "SELECT id_user from users where username = '$username'";
        $result_select2 = mysqli_query($mysqli,$select2);
        if (mysqli_num_rows($result_select2) > 0) {
            while ($ligne2=mysqli_fetch_array($result_select2)){
                $id = $ligne2['id_user'];
                
            }
        }
        foreach($elementsAleatoires as $value){
            $nom = $value['nom'];
            $prenom = $value['prenom'];
            $age = $value['age'];
            $metier = $value['metier'];
            $classe = $value['classe'];
            $insert2 = "INSERT INTO `persos`(`id_user`, `nom`, `prenom`, `age`, `metier`, `classe`) VALUES ('$id','$nom','$prenom','$age','$metier','$classe')";
            $result_insert2 = mysqli_query($mysqli,$insert2);
        }
        foreach($vaisseauxArray as $value){
            //echo $value['nom'];
            $nom = $value['nom'];
            $etat_technique = $value['etat_technique'];
            $etat_proprete = $value['etat_proprete'];
            
            $insert3 = "INSERT INTO `vaisseaux`(`nom`, `etat_technique`, `etat_proprete`,`id_user`) VALUES ('$nom','$etat_technique','$etat_proprete','$id')";
            $result_insert3 = mysqli_query($mysqli,$insert3);
        }
    }
}

if($error2>0){
    echo "nom d'utilisateur déja pris";
    
}





?>

Youez - 2016 - github.com/yon3zu
LinuXploit