QQ_sqlJEGY.inc
Line #0:<? Session_start();
Line #1:
Line #2:include('bilib.inc');
Line #3:
Line #4:BISQLcon();
Line #5:
Line #6:if(isset($_SESSION[sql_PAR])) $sqlpar=$_SESSION[sql_PAR];
Line #7:
Line #8:echo("<H1>SQL </H1>P:$_POST[parancs]<br>
Line #9:Par:$_POST[sqlpar]<br>G:$_GET[parancs]<br>S:$_SESSION[sql_PARANCS]<Hr>");
Line #10:
Line #11:if (isset($_POST[parancs]))
Line #12:{
Line #13:
Line #14:$parancs=str_replace("\\","",$_POST[parancs]);
Line #15:$parancs=str_replace("!"," ",$parancs);
Line #16:
Line #17:$parancs=str_replace("$","#",$parancs);
Line #18:
Line #19:IF ($_POST[sqlpar]<>""){
Line #20: $c3=SUBSTR("000".$_POST[sqlpar],-3);
Line #21: $_SESSION[sql_PAR]=$_POST[sqlpar]+1;
Line #22: $parancs=str_replace("%%3%%",$c3,$parancs);
Line #23:}
Line #24:
Line #25://$parancs=str_replace("~","'",$parancs);
Line #26:
Line #27://UPDATE qj_musor SET archiv="*";
Line #28://UPDATE `qj_musor` SET archiv="*"
Line #29:
Line #30:echo($parancs."<hr>");
Line #31:mysql_query($parancs) or die($parancs." Hiba az SQL parancsban");
Line #32:}
Line #33:
Line #34:if (isset($_GET[parancs]))
Line #35:{
Line #36:$parancs=str_replace("\\","",$_GET[parancs]);
Line #37:$parancs=str_replace("~","'",$parancs);
Line #38:$parancs=str_replace("!"," ",$parancs);
Line #39://$parancs=$_POST[parancs];
Line #40:}
Line #41:
Line #42:if (isset($_SESSION[sql_PARANCS])) {
Line #43:$parancs=str_replace("\\","",$_SESSION[sql_PARANCS]);
Line #44:$parancs=str_replace("~","'",$parancs);
Line #45:$parancs=str_replace("!"," ",$parancs);
Line #46:unset($_SESSION[sql_PARANCS]);
Line #47:}
Line #48:
Line #49:?>
Line #50:
Line #51:<FORM name=orderby action='QJ_sqlJEGY.php' method='post'>
Line #52:<table border=1 align=center bgcolor='gold'>
Line #53:
Line #54:<tr>
Line #55:<td align=right>REMOTE SQL parancs<br>
Line #56:sqlpar=%%3%%->003< <br>
Line #57:<?php echo($_SESSION[adPath]); ?><br>
Line #58:<input type='text' value='<?php echo($sqlpar); ?>' name='sqlpar'><br>
Line #59:
Line #60:
Line #61:</td>
Line #62:<td><font size=3>
Line #63:<textarea ROWS=10 cols=50 name='parancs'>
Line #64:<? echo($parancs); ?>
Line #65:
Line #66:
Line #67:</textarea></font>
Line #68:</td>
Line #69:</tr>
Line #70:</table>
Line #71:</form>
Line #72:<?
Line #73:include("QJ_varlist.php");
Line #74:?>