KGRKJGETMRETU895U-589TY5MIGM5JGB5SDFESFREWTGR54TY
Server : Apache/2.2.17 (Unix) mod_ssl/2.2.17 OpenSSL/0.9.8e-fips-rhel5 DAV/2 PHP/5.2.17
System : Linux localhost 2.6.18-419.el5 #1 SMP Fri Feb 24 22:47:42 UTC 2017 x86_64
User : nobody ( 99)
PHP Version : 5.2.17
Disable Function : NONE
Directory :  /home/queenjbs/jaejoong_X/pages/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : //home/queenjbs/jaejoong_X/pages/comment_proc.php
<?
	include "$DOCUMENT_ROOT/conf/conf_dir.php";
?>
<META http-equiv=Content-Type content="text/html; charset=UTF-8">
<?
if($mode == "del"){
	$query = "delete from board_comment where idx='$cidx'";
	$result = mysql_query($query,$db_con);
}else{
$contents = addslashes($comment); //특수문자db에 들어가게..
$orderBy = mktime();

	$query = "INSERT INTO board_comment
									(module_no,module_name,user_name,content,order_by,reg_date,user_no,ip)
								VALUES
									('$idx','$tableMode','$sessionNickname','$contents','$orderBy',now(),'$sessionIDX','$REMOTE_ADDR')";

	//echo $query;
	$result = mysql_query($query,$db_con);
}
if($tableMode == "free"){
	 $fileName = "board";
}else{
		$fileName = "from";
}

	$returnUrl = "./".$fileName."_view.php?num=$idx";
?>
<script>
document.location='<?=$returnUrl?>';
</script>

Anon7 - 2021