@Ghazascanner
_2019runbot
Ghazascanner File Manager
server :Linux adweb87 2.6.32-754.el6.x86_64 #1 SMP Tue Jun 19 21:26:04 UTC 2018 x86_64
Current Path :
/
home
/
sanchung
/
public_html
/
admin
/
message
/
Path :
Upload File :
New :
File
Dir
/home/sanchung/public_html/admin/message/down.php
<? $file = @file("$DOCUMENT_ROOT/board/data/admin_setup.cfg"); $var_array = array("dbname","dbhost","dbuser","dbpass","tname1","admin_super_key"); $exp = explode("|*|", $file[0]); while(list($k , $v) = each($var_array)){ ${$v} = $exp[$k]; } @mysql_connect($dbhost,$dbuser,$dbpass); @mysql_select_db($dbname); $sql = "select * from message where num='$num' "; $row = mysql_fetch_array(mysql_query($sql)); $file_name = ($row[addfile_name]) ? $row[addfile_name] : $row[addfile]; $full_path="./data/$row[addfile]"; // ÆÄÀÏÀÌ ÀÖ´Â °÷ if( $fp=@fopen( $full_path, "r" ) ) { Header("Content-type: file/unknown"); Header("Content-Disposition: attachment; filename=$file_name"); Header("Content-Description: PHP4 Generated Data"); while( $data=fread( $fp,filesize($full_path) ) ) { print($data); } } else { echo"<script> alert('ÀÚ·áÆÄÀÏÀÌ ¾ø½À´Ï´Ù. '); history.back(); </script>"; } ?>