T.ME/BIBIL_0DAY
CasperSecurity


Server : Apache/2
System : Linux server-15-235-50-60 5.15.0-164-generic #174-Ubuntu SMP Fri Nov 14 20:25:16 UTC 2025 x86_64
User : gositeme ( 1004)
PHP Version : 8.2.29
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Directory :  /home/gositeme/domains/gositeme.com/private_html/quickqr/admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /home/gositeme/domains/gositeme.com/private_html/quickqr/admin/blog-new.php
<?php
require_once('includes.php');

$id = $title = $image = $description = $tags =  $status = null;
$categories = array();
if(!empty($_GET['id'])) {
    $sql = "SELECT b.*, GROUP_CONCAT(bc.category_id) categories FROM `".$config['db']['pre']."blog` b LEFT JOIN `".$config['db']['pre']."blog_cat_relation` bc ON bc.blog_id = b.id WHERE b.id = ".$_GET['id'];

    $info = ORM::for_table($config['db']['pre'].'blog')->raw_query($sql)->find_one();
    if (!empty($info)) {
        $id = $info['id'];
        $title = $info['title'];
        $image = $info['image'];
        $description = stripslashes($info['description']);
        $status = $info['status'];
        $tags = $info['tags'];
        $categories = explode(',',$info['categories']);
    } else {
        exit();
    }
}
?>
<style>
    #quickad-tbs .note-toolbar.panel-heading {
        padding: 0 10px 5px;
    }
    #quickad-tbs .note-editor.panel {
        border: 1px solid #d9dee4;
    }

    #quickad-tbs .redux-option-image {
        margin-bottom: 10px;
    }

    #quickad-tbs .panel.quickad-main > .panel-body {
        padding: 15px;
    }

    #quickad-tbs .panel.quickad-main .panel-body + .panel-footer {
        margin: 0 15px 15px;
        padding: 15px 0 0 0;
    }

    #quickad-tbs .blog_categories {
        margin: 0;
        max-height: 125px;
        overflow: auto;
    }

    #quickad-tbs .blog_categories li {
        margin-bottom: 5px;
        padding: 0;
        word-wrap: break-word;
    }

    #quickad-tbs .blog_categories label {
        display: flex;
        cursor: pointer;
        font-weight: normal;
    }

    #quickad-tbs .blog_categories label input {
        margin: 0 5px 0 0;
    }
</style>
<link href="assets/css/user-html.css" rel="stylesheet">
<main class="app-layout-content">
    <div class="container-fluid p-y-md">
        <div id="quickad-tbs">
            <div class="quickad-tbs-body">
                <h2><?php if(!empty($_GET['id'])) {
                        echo 'Edit Blog';
                    }else{
                        echo 'Add New Blog';
                    }
                    ?></h2>
                <hr>
                <form id="blog_form_ajax" method="post" action="#" enctype="multipart/form-data">
                    <input type="hidden" name="id" id="post_id" value="<?php echo $id; ?>">
                    <div class="row">
                        <div class="col-sm-8">
                            <div class="form-group">
                                <label for="title">Title</label>
                                <span class="help-block">No html allowed here.</span>
                                <div>
                                    <input name="title" class="form-control" type="Text" id="title" value="<?php echo $title; ?>"
                                           required="">
                                </div>
                            </div>
                            <div class="form-group">
                                <label for="post_image">Image</label>
                                <span class="help-block">Only jpg, jpeg & png allowed.</span>
                                <div><img class="redux-option-image" id="post_image" src="../storage/blog/<?php echo $image; ?>" alt="" width="400px"  <?php if(empty($image)){ ?>style="display: none" <?php } ?>></div>
                                <input class="form-control input-sm" type="file" name="image"
                                           onchange="readURL(this,'post_image')">
                            </div>
                            <div class="form-group">
                                <label>Description</label>
                                <div class="user-html">
                                    <textarea name="description" rows="6" class="form-control summernote"><?php echo $description; ?></textarea>
                                </div>
                            </div>
                        </div>
                        <div class="col-sm-4">
                            <div class="panel panel-default quickad-main">
                                <div class="panel-heading">Publish</div>
                                <div class="panel-body">
                                    <label for="status">Status</label>
                                    <span class="help-block">Select "Pending" if you want to hide the blog.</span>
                                    <select name="status" id="status" class="form-control">
                                        <option <?php echo $status == 'publish'?'selected':''; ?> value="publish">Publish</option>
                                        <option <?php echo $status == 'pending'?'selected':''; ?> value="pending">Pending</option>
                                    </select>
                                </div>
                                <div class="panel-footer">
                                    <button id="blog_submit_btn" name="submit" type="submit" class="btn btn-success">Submit</button>
                                </div>
                            </div>
                            <div class="panel panel-default quickad-main">
                                <div class="panel-heading">Categories</div>
                                <div class="panel-body">
                                    <ul class="blog_categories">
                                    <?php
                                    $rows = ORM::for_table($config['db']['pre'].'blog_categories')
                                        ->order_by_asc('position')
                                        ->find_many();
                                    foreach ($rows as $row) { ?>
                                    <li>
                                        <label>
                                            <input value="<?php echo $row['id']; ?>" type="checkbox" name="category[]" id="category-<?php echo $row['id']; ?>" <?php echo in_array($row['id'],$categories)?'checked':''; ?>> <?php echo $row['title']; ?>
                                        </label>
                                    </li>
                                    <?php } ?>
                                    </ul>
                                </div>
                            </div>
                            <div class="panel panel-default quickad-main">
                                <div class="panel-heading">Tags</div>
                                <div class="panel-body">
                                    <span class="help-block">Enter tags separated by comma.</span>
                                    <textarea name="tags" rows="2" class="form-control" id="tags"><?php echo $tags; ?></textarea>
                                </div>
                            </div>
                        </div>
                    </div>
                </form>
            </div>
        </div>
    </div>
</main>

<?php include("footer.php"); ?>
<link href="assets/js/plugins/summernote/summernote.css" rel="stylesheet">
<script src="assets/js/plugins/summernote/summernote.js"></script>
<script>
    $(document).ready(function() {
        $('.summernote').summernote({
            tabsize: 2,
            height: 250,
            toolbar: [
                ['style', ['style']],
                ['font', ['bold', 'underline', 'clear']],
                ['para', ['ul', 'ol', 'paragraph']],
                ['table', ['table']],
                ['insert', ['link', 'picture', 'video']],
                ['view', ['fullscreen', 'codeview', 'help']]
            ]
        });
    });
</script>

</body>

</html>

CasperSecurity Mini