403Webshell
Server IP : 104.21.21.239  /  Your IP : 216.73.217.134
Web Server : Apache/2.4.68 (Amazon Linux) OpenSSL/3.5.5
System : Linux ip-172-31-69-123.ec2.internal 6.1.176-223.369.amzn2023.x86_64 #1 SMP PREEMPT_DYNAMIC Fri Jul 24 13:34:27 UTC 2026 x86_64
User : ec2-user ( 1000)
PHP Version : 8.4.23
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/nymp/wwwdev/mod/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/nymp/wwwdev/mod/_header.php
<?php
	//ini_set('display_errors',1);
	//error_reporting(E_ALL);
	//error_reporting(0);
	//header("HTTP/1.1 202 Accepted");
	header("Expires: Mon, 26 Jul 1997 05:00:00 GMT");
	header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT");
	header("Cache-Control: no-store, no-cache, proxy-revalidate, must-revalidate");
	header("Cache-Control: post-check=0, pre-check=0", false);
	header("Cache-Control: max-age=10000000, s-maxage=1000000");
	header("Pragma: no-cache");
	session_start();
	include_once('config.php');
	date_default_timezone_set(APP_TIMEZONE);
	try {
		$db = new PDO(DB_CONNECT_STRING, DB_USER, DB_PWD);
	} catch (Exception $e) {
		die('Could not connect: ' . 'Database Error!');
	}
	$sql_tz = "SET time_zone = '".APP_TIMEZONE."'";
	$db->query($sql_tz);
	$db->setAttribute(PDO::ATTR_ERRMODE, PDO::ERRMODE_EXCEPTION);
	require_once('mod/_functions.php'); 
	//var_dump($_SERVER);
	//echo 'Location: http://'.$_SERVER['SERVER_NAME'].$_SERVER['SCRIPT_NAME'].'?IX=login';
	//echo 'Page allowed: '.page_allowed($_GET['IX']);
	if (empty($_GET['IX'])) :
		$_GET['IX'] = 'home';
	endif;
	if (!page_allowed($_GET['IX'])) :
		if ($_SESSION['logged_in'] == true) :
			$redirect_url = "http://".$_SERVER['SERVER_NAME'].$_SERVER['SCRIPT_NAME']."?IX=authorization";
		else:
			$redirect_url = "http://".$_SERVER['SERVER_NAME'].$_SERVER['SCRIPT_NAME']."?IX=home";
		endif;
		//echo curr_page_url();
		//echo $redirect_url;
		if (strtoupper(curr_page_url()) != strtoupper($redirect_url)) :
			header("Location: ".$redirect_url);
			exit();
		endif;
	else :
		if ($_GET['IX'] != 'logout') :
			/*
			$ar_valid_no_bm_pages = array('event_form', 'event_activate', 'account_form', 'ez_guide', 'tools_tips', 'help', 'home', 'contact_form', 'videos');
			if (empty($_SESSION['active_event']) && (!empty($_SESSION['user_id'])) && (!in_array(strtolower($_GET['IX']), $ar_valid_no_bm_pages, true)))
			{
				$_GET['IX'] = 'events';
			}
			*/
			if ($_SESSION['logged_in'] == true && $_SESSION['password_expired'] && $_GET['IX'] != 'password_form') :
				$redirect_url = "http://".$_SERVER['SERVER_NAME'].$_SERVER['SCRIPT_NAME']."?IX=password_form";
				header("Location: ".$redirect_url);
				exit();
			endif;
			$curr_page_url = curr_page_url();
			if (page_secure($_GET['IX']) && substr($curr_page_url,0,strlen(APP_PREFIX_SECURE)) != APP_PREFIX_SECURE) :
				$redirect_url = str_replace(APP_PREFIX_STANDARD,APP_PREFIX_SECURE,$curr_page_url);
				//echo $redirect_url;
				header("Location: ".$redirect_url);
				exit();
			endif;
			if (!page_secure($_GET['IX']) && substr($curr_page_url,0,strlen(APP_PREFIX_STANDARD)) != APP_PREFIX_STANDARD) :
				$redirect_url = str_replace(APP_PREFIX_SECURE,APP_PREFIX_STANDARD,$curr_page_url);
				//$redirect_url = str_replace(':443','',$curr_page_url);
				header("Location: ".$redirect_url);
				exit();
			endif;
			/*
			if (!isset($_SESSION['appstack'])) :
				$_SESSION['appstack'] = [];
			endif;
			if ($_SESSION['appstack'][count($_SESSION['appstack']) - 1]['IX'] != $_GET['IX'] || $_SESSION['appstack'][count($_SESSION['appstack']) - 1]['region'] !== $_GET['region']) :
				array_push($_SESSION['appstack'], $_GET);
			endif;
			*/
			//var_dump($_SESSION['appstack']);
		endif;
	endif;
?>

Youez - 2016 - github.com/yon3zu
LinuXploit