KGRKJGETMRETU895U-589TY5MIGM5JGB5SDFESFREWTGR54TY
Server : Apache/2.4.62
System : FreeBSD fbsdweb2.web.rcn.net 14.1-RELEASE FreeBSD 14.1-RELEASE releng/14.1-n267679-10e31f0946d8 GENERIC amd64
User : www ( 80)
PHP Version : 8.3.8
Disable Function : NONE
Directory :  /domains/abtechsci/mmc15/Membership/admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /domains/abtechsci/mmc15/Membership/admin/files.php
<?php
/************* Membership V2.0 *******************/
/*
Released by AwesomePHP.com, under the GPL License, a
copy of it should be attached to the zip file, or
you can view it on http://AwesomePHP.com/gpl.txt
*/
/************* Membership V2.0 *******************/	
if($is_admin == false){ die();}
?>
  <table width="100%"  border="1" cellspacing="0" cellpadding="5">
    <tr>
      <td width="98%" bgcolor="#BEDEDE"><div align="center"><font size="2"><strong><font color="#990000">Select Membership:</font></strong>
            <select id="membership_info" name="membership_info" class="hiddenText" onChange="doUpdate();">
              <option value="" selected>------------------</option>
              <?php
	  $query = mysql_query("SELECT * FROM `memb_memberships`");
	  
	  while($em = mysql_fetch_assoc($query)){
	  	echo '<option value="'.$em['membership_id'].'|+|'.$em['membership_file'].'">'.$em['membership_title'].'</option>';
	  }
	  ?>
            </select>
            <script language="javascript">
	function doUpdate(){

		var listMenu = document.getElementById('membership_info');

		membershipInfo = listMenu.options[listMenu.selectedIndex].value.split('|+|');
		if(membershipInfo){
			var htCode = 'AuthUserFile '+membershipInfo[1]+"\n\nAuthName \"Please Log In\"\nAuthType Basic\nrequire valid-user";
			var phCode = "/************* Membership V2.0 *******************/\n/*\nReleased by AwesomePHP.com, under the GPL License, a\ncopy of it should be attached to the zip file, or\nyou can view it on http://AwesomePHP.com/gpl.txt\n*/\n/************* Membership V2.0 *******************/	\n\n//Call Database & Connect\nrequire_once('headers/database.php');\nconnect();\n\n//Call functions\nrequire_once('headers/functions.php');\n\n$MEMBERSHIP_ID_CHECK = "+membershipInfo[0]+";\n\n//Login Check Page\nrequire_once('headers/logincheck.php');\n\nif($is_logged == false){\n	//Disconnect Database\n	disconnect_data();\n	die('You need to login before accessing this page.');\n}\n\n//If Database access is not needed anymore,\ndisconnect_data();";
			document.getElementById('htaccess').value = htCode;
			document.getElementById('phpCode').value = phCode;
		}
	}
	        </script>
</font></div></td>
    </tr>
    <tr>
      <td bgcolor="#BEDEDE"><div align="center"><font color="#999999" size="4"><strong>How to limit file access to only authorized users? </strong></font></div></td>
    </tr>
    <tr>
      <td bgcolor="#FFF2F2"><div align="left">
        <p><font size="2">1) To protect any PHP file from being accessed except from authorized users, please this PHP code on top-most of the file:
        </font></p>
      </div></td>
    </tr>
    <tr>
    
<td>
<div align="center">

<textarea name="phpCode" id="phpCode" rows="10" class="hiddenText" readonly>/************* Membership V2.0 *******************/
/*
Released by AwesomePHP.com, under the GPL License, a
copy of it should be attached to the zip file, or
you can view it on http://AwesomePHP.com/gpl.txt
*/
/************* Membership V2.0 *******************/	

//Call Database & Connect
require_once('headers/database.php');
connect();

//Call functions
require_once('headers/functions.php');

$MEMBERSHIP_ID_CHECK = 1;

//Login Check Page
require_once('headers/logincheck.php');

if($is_logged == false){
	//Disconnect Database
	disconnect_data();
	die('You need to login before accessing this page.');
}

//If Database access is not needed anymore,
disconnect_data();</textarea>

</div>
</td>

</tr>

<tr>

<td bgcolor="#BEDEDE">
<div align="center">
<font color="#999999" size="4"><strong>How to limit directory access to only authorized users? </strong></font>
</div>
</td>

</tr>

<tr>

<td bgcolor="#FFF2F2"><font size="2">
1) To protect any directory access to authorized users, please create/update an .htaccess file within the directory with this code:
    </font></td>

</tr>

<tr>

<td>
<div align="center">
<textarea name="htaccess" id="htaccess" rows="5" class="hiddenText" readonly>AuthUserFile /locationTo/Membership/File

AuthName "Please Log In"
AuthType Basic
require valid-user</textarea>
</div>
</td>

</tr>

  </table>

Anon7 - 2021