File Manager V1.5

[SYSTEM@ROOT]: /home/ketechno/public_html/QuickCheck/
INJECT_FILE:
NEW_ENTRY:

FILE_CONTENT: cbox.php

<?php
session_start();
require_once('db_conn.php');

 $description	= ( isset( $_REQUEST['description'] ) )?  $_REQUEST['description']: null;
$title	= ( isset( $_REQUEST['title'] ) )? 		$_REQUEST['title']: null;
$user_id = ( isset( $_REQUEST['id'] ) )? 		$_REQUEST['id']: null;
$cluster = ( isset( $_REQUEST['cluster'] ) )? 		$_REQUEST['cluster']: null;	
	$firstname = $_SESSION['firstname'];
	$surname = $_SESSION['surname'];
	$user_id = $_SESSION['id'];	
	//$user_id = $_SESSION['id2'];	
	
	
		//------------------
	 if(isset($_POST['submit'])){
 
 // Count total files
 $countfiles = count($_FILES['uploads']['name']);

 // Looping all files
 for($i=0;$i<$countfiles;$i++){
  $filename = $_FILES['uploads']['name'][$i];
  // Upload file
  move_uploaded_file($_FILES['uploads']['tmp_name'][$i],'cbox/'.$filename);
 
 	 //---------------
//print_r($_REQUEST);     
//print_r($_FILES);  
    
$sql = "INSERT INTO cluster_box (user_id, cluster, filename, description, uploads, user)
 VALUES ('$user_id','$cluster','$title','$description','$filename','$firstname $surname')";

	   
if ($conn->multi_query($sql) == TRUE) {
	
	echo ("<SCRIPT LANGUAGE='JavaScript'>
    window.alert(' Info Successfully posted to Cluster_box ')
    window.location.href='cluster_box.php';
    </SCRIPT>");
	   
} 
  }
} 
   
else {
  
	echo ("<SCRIPT LANGUAGE='JavaScript'>
    window.alert('Info not Submitted  try again')
    window.location.href='cluster_box.php';
    </SCRIPT>");

}
	
$conn->close();
?> 
[ KEMBALI ]