MOON
Server: Apache/2.2.21 (Unix) mod_ssl/2.2.21 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4
System: Linux vps.panamaemb.org.sg 3.10.0-1160.80.1.vz7.191.4 #1 SMP Thu Dec 15 20:31:06 MSK 2022 x86_64
User: panama (500)
PHP: 5.2.17
Disabled: NONE
Upload Files
File: /home/panama/public_html_old/onlinevisa.php
<? 
	include("include/config.php"); 	
	$db_sel = new database();
	$pageid=8;
	$db_sel->where("pageid=".$pageid);
	$db_sel->selectstmt("cmspagemaster");
	$pagetitle = $db_sel->f_pagetitle;
	$pagemeta = $db_sel->f_pagemeta;
	$pagemetadesc = $db_sel->f_pagemetadesc;
	//$str_len=strlen($db_sel->f_pagedesc);
	//if($str_len>1100) 
	//$description = substr($db_sel->f_pagedesc,0,1100)."...";
	//else 
	$description = $db_sel->f_pagedesc;
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="description" content="<?=$pagemetadesc?>" />
<meta name="keywords" content="<?=$pagemeta?>"/>
<title><?=SITE_TITLE."- Services - ".$pagetitle?></title>
<!-- Stylesheets -->
<link rel="stylesheet" type="text/css" href="styles.css"/>
<!-- Javascript -->
<!--[if IE 6]><script src="js/ie6.js"></script><![endif]--> 
<link rel="stylesheet" href="css/dropdownmenu.css" type="text/css" />
<script type="text/javascript" src="js/dropdownmenu.js"></script>
<? include('includescript.php')?>
</head>

<body>
<? include("header.php") ?>
<div id="contentwrapper">
  <div class="contentcontainer">
        <div class="maincontainer">
              <div class="servicesbannerwrapper"><img src="images/banner_services.jpg" width="958" height="178" alt=""/></div>
        </div>
        <div class="maincontainer">
              <div class="servicetextwrapper">
                    <div class="title">
                       <div class="breadcrumbs">
                            <ul>
                                  <li class="first"><span class="titleicons"><img src="images/icon_services.png" width="40" height="42" alt=""/></span>&nbsp;Services</li>
                                  <li><?=$pagetitle?></li>
                            </ul>
                        </div>
                    </div>
                    <div >
					<font size="2">Please Login Fill up application form.</font><p>&nbsp;</p>
					<form action="onlinevisa.php" method="POST" onsubmit="return EW_checkMyForm(this);">
<script type="text/javascript" src="./js/ewp.js"></script>
<Script Language="JavaScript"> 
function EW_checkMyForm(EW_this) {
	if (!EW_hasValue(EW_this.txtUserID, "TEXT" )) {
		if  (!EW_onError(EW_this, EW_this.txtUserID, "TEXT", "Please Enter Your Email!"))
			return false;
	}
	if (!EW_hasValue(EW_this.txtPassword, "PASSWORD" )) {
		if (!EW_onError(EW_this, EW_this.txtPassword, "PASSWORD", "Please Enter Password!"))
			return false;
	}
}</Script>
						<table border="0" width="100%" id="table1">
							<tr>
								<td align="right">Email:</td>
								<td><input type="text" name="txtUserID" id="txtUserID" size="20"></td>
							</tr>
							<tr>
								<td align="right">Password</td>
								<td>
								<input type="password" name="txtPassword" id="txtPassword" size="20"></td>
							</tr>
							<tr>
								<td colspan="2">
								<p align="center" style="text-align: center">
								<input type="submit" value="Sign in" name="submit" id="submit">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 
                                <input type="reset" value="Clear" name="clear" id="clear"></td>
							</tr>
						</table>
						<p><a href="signup.php">Sign Up New User</a>. Forget 
						your password Please click <a href="reset.php?reset=false">Here</a>.</p>
						<p><a href="resend.php">Resend</a> Activation Email.</p>
                    </form>
                    </div>
              </div>
              <div class="servicesphotowrapper">
                    <div class="servicesphotocontainer">
                          <? include("right.php");?>
                    </div>
              </div> 
        </div>
  </div>
  <? include('footer.php') ?>
</div>
<?php require_once ("include/ewconfig.php") ?>
<?php require_once ("include/db.php") ?>				
<?php
	if (@$_POST["submit"] <> "")
	{
		$sUsername = @$_POST["txtUserID"];
		$sPassword = @$_POST["txtPassword"];
		if (ValidateUser($sUsername,$sPassword,$UserID))
		{
			/*
			header("Gold Mine: index_portal.php");
			echo "<script language=javascript>alert('Come to Go!!!');</script>";
			*/
			/*echo "<script language=javascript>alert('Come to Go User ".$UserID."!!!');</script>";*/
			if($sUsername=="admin")
			{
				$url="appadmin.php?userid=".$sUsername."&appid=&action=";
			}
			else
			{
				$url="applist.php?userid=".$UserID."&appid=&action=";
			}
			header("Location: $url");
		}
		else
		{
			
		}
	}
	else
	{
		
	}
	
?>

<?php

// Function to validate user
function ValidateUser($Username,$Password,&$UserID)
{
	$ValidateUser = false;
	$CaseSensitive = false; // Modify case sensitivity here
	
	// Check other users
	if (!$ValidateUser)	
	{
	$conn = phpmkr_db_connect(HOST, USER, PASS, DB, PORT);
	$Username = (!get_magic_quotes_gpc()) ? addslashes($Username) : $Username;
	$sFilter = "(`UserID` = '" . AdjustSql($Username) . "')";
	$sSql = "Select * From visa_user Where Username='" . $Username . "'";
	$query = phpmkr_query($sSql,$conn) or die("Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql);
	if (phpmkr_num_rows($query) > 0) 
	{
		$rs = phpmkr_fetch_array($query);
		
		if ($rs["password"] == (base64_encode($Password))) 
		{
			if($rs["active"]=="N")
			{
				echo "<script language=javascript>alert('Your Account is Inactive!');</script>";
			}
			else
			{
				$expirytime = time() + 365*24*60*60;
				setcookie('UserName',$rs["UserName"],$expirytime);
				setcookie('UserFirstName',$rs["firstname"],$expirytime);
				setcookie('UserLastName',$rs["lastname"],$expirytime);
				$_SESSION[ewSessionStatus]   	= "login";
				$_SESSION[ewSessionUserID]		= $rs["Username"];
				$_SESSION[ewSessionUserName] 	= $rs["firstname"].$rs["lastname"];
				$_SESSION[ewSessionSysAdmin] 	= 1; // Non system admin
				$UserID=$rs["userid"];
				$ValidateUser=true;
			}
		}
		else
		{
			echo "<script language=javascript>alert('Invalid Password!');</script>";
		}
	}
	else
	{
		echo "<script language=javascript>alert('Invalid User Name!Please Check or Apply New User!');</script>";	
		setcookie('UserName',"",100);
		setcookie('UserFirstName',"",100);
		setcookie('UserLastName',"",100);
	}
	phpmkr_free_result($query);
	phpmkr_db_close($conn);
	}
	return $ValidateUser;
}
?>
</body>
</html>