MOON
Server: Apache
System: Linux ip-208-109-13-31.ip.secureserver.net 3.10.0-1160.119.1.el7.tuxcare.els4.x86_64 #1 SMP Sat Aug 31 06:58:57 UTC 2024 x86_64
User: durgeshpandey215 (1013)
PHP: 8.1.29
Disabled: NONE
Upload Files
File: /home/durgeshpandey215/public_html/zeeroprice.skilladders.com/admin/user-add-handle.php
<?php
require('../application_top.php');
require('protect-admin.php');
if(isset($_POST['token'])&&($_POST['token'] == $_SESSION['token'])){
	$db->where('mobno',$_POST['mobileno']);
	$rowsad = $db->getOne('register');
	if($rowsad){	
			$_SESSION['msg'] = 'Mobile number already existed. Please try again with different username';
	}else{
		
		$fullname = ucwords($_POST['fullname']);
		$mobno = $_POST['mobileno'];
		
		$dbdataArr = array(
		'adminid'=>$_SESSION['adminid'],
		'mobno'=>$mobno,
		'ipassword'=>md5($_POST['ipassword']),
		'fullname'=>$fullname,
		'emailid'=>$_POST['emailid'],
		'verified'=>1,
		'istatus'=>1	
		);

//-----------------UPLOAD PIC DATA-----------------------

for($i=1;$i<=1;$i++){
${'inputpic'.$i} = isset($_REQUEST['inputpic'.$i])? $_REQUEST['inputpic'.$i] : "";
if(${'inputpic'.$i}){
$extension = pathinfo($_REQUEST['filename'.$i], PATHINFO_EXTENSION);
${'filename'.$i} = date('dmHis').rand(100,999).".".$extension;

	if (strpos(${'inputpic'.$i}, 'data:image/jpeg;base64,') === 0) {
	${'inputpic'.$i} = str_replace('data:image/jpeg;base64,', '', ${'inputpic'.$i});  
	}
	if (strpos(${'inputpic'.$i}, 'data:image/png;base64,') === 0) {
	${'inputpic'.$i} = str_replace('data:image/png;base64,', '', ${'inputpic'.$i}); 
	}
	if (strpos(${'inputpic'.$i}, 'data:image/bmp;base64,') === 0) {
	${'inputpic'.$i} = str_replace('data:image/bmp;base64,', '', ${'inputpic'.$i}); 
	}
	${'inputpic'.$i} = str_replace(' ', '+', ${'inputpic'.$i});
	$data = base64_decode(${'inputpic'.$i});
	
	$file = '../images/users/'.${'filename'.$i};
	if (file_put_contents($file, $data)){
	//update db table
	$dbdataArr['pic'.$i] = ${'filename'.$i};
	}
}
}
//----------------------------------------
			
		if($db->insert('register',$dbdataArr)){
			$_SESSION['msg'] = 'Account Created!';
		}
	}
	header('location:'.$_SERVER['HTTP_REFERER']);exit;
}
?>