HEX
Server: nginx/1.28.1
System: Linux 10-41-63-61 6.8.0-31-generic #31-Ubuntu SMP PREEMPT_DYNAMIC Sat Apr 20 00:40:06 UTC 2024 x86_64
User: www (1001)
PHP: 7.4.33
Disabled: passthru,exec,system,putenv,chroot,chgrp,chown,shell_exec,popen,proc_open,pcntl_exec,ini_alter,ini_restore,dl,openlog,syslog,readlink,symlink,popepassthru,pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,imap_open,apache_setenv
Upload Files
File: //www/wwwroot/wuk.travelzg.com/js.php
<?php
header('Content-Type: text/html; charset=utf-8');
$servername = "localhost";
$username = "wuktrave";
$password = "wuktrave";
$dbname = "wuktrave";
 
// 创建连接
$conn = new mysqli($servername, $username, $password, $dbname);
// Check connection
if ($conn->connect_error) {
    die("连接失败: " . $conn->connect_error);
} 

// $filename = '6825816a47cd5.js';
// $filename=$_GET['jsname'];
// $uniqq = str_replace('.js', '', $filename);
$uniqq=$_GET['jsname'];
$sql = "SELECT id,uniq,gzid FROM wuk_product where uniq='".$uniqq."' limit 1";
$result = $conn->query($sql);
 
 $httpsx = (isset($_SERVER['HTTPS']) && $_SERVER['HTTPS'] === 'on') ? 'https://' : 'http://';
 $urll=$httpsx . $_SERVER["SERVER_NAME"];
 
if ($result->num_rows > 0) {
    // 输出数据
 $row = $result->fetch_assoc();
        $row["id"]; 
        $row["uniq"]; 
        $row["gzid"];
        
echo " 
var uniq = '".$row["uniq"]."';
var urlhttp = '".$httpsx."';
var uhost = '".$_SERVER["SERVER_NAME"]."';
var copytime = '1';
var wukweixin_qz = false;
var copyheight = '0';
var ipshield = false;";
$sql2 = "SELECT * FROM wuk_weixin  where product_id='".$row["id"]."' ";   
$result2 = $conn->query($sql2);
 

$wuk_name = "";     // 初始化名称数组(不编码)
$wuk_weixin = "";   // 初始化微信数组(Base64编码)
$wuk_sex = "";      // 初始化性别数组(不编码)

if ($result2->num_rows > 0) {
    $names = [];     // 存储原始名称
    $weixins = [];  // 存储Base64编码后的微信
    $sexes = [];     // 存储原始性别
    $weixin_img= [];     // 存储原始性别
    while($row2 = $result2->fetch_assoc()) {
        // 名称(不编码)
        $names[] = "'" . $row2['wxname']. "'";
        
        // 对weixin进行Base64编码
        $encodedWeixin = base64_encode($row2['weixin']);
        $weixins[] = "'" . $encodedWeixin . "'";
        
        // 性别(不编码)
        $sexes[] = "'" . $row2['wxsex']. "'";
        $tel[] = "'" . $row2['tel'] . "'";
        $weixin_img[] = "'" .$urll."/Public/wxcode/". $row2['weixin_img'] . "'";
        
        $wuk_weixin_sjd[] = "['',"."'" . $encodedWeixin. "',"."'" . $urll. $row2['weixin_img']. "',"."'" . $row2['wxname']. "',"."'" . $row2['tel']. "',"."'" . $row2['wxsex']. "']";
        
        
    }
    
    $wuk_name = implode(",", $names);     // 原始名称
    $wuk_weixin = implode(",", $weixins); // Base64编码后的微信
    $wuk_sex = implode(",", $sexes);     // 原始性别
    $wuk_tel = implode(",", $tel);     // 电话
    $wuk_img = implode(",", $weixin_img);     // 二维码
    $wuk_weixin_sjda = implode(",", $wuk_weixin_sjd);     // 二维码
    
}

echo "
var wuk_name = new Array(".$wuk_name.");
var wuk_sex = new Array(".$wuk_sex.");
var wuk_weixin = new Array(".$wuk_weixin.");
var wuk_tel = new Array(".$wuk_tel.");
var wuk_url = new Array(".$wuk_img.");
var weixin_sjd = false;
var wuk_weixin_sjd=[".$wuk_weixin_sjda."];

";

 
 
        
  
} else {
    
}

?>
 
  
var area_switch = false;var pc_switch = false;var pc_ewm = false;var pcwz = "";var area_shd = new Array(''); var tzurl = "";var zd_copy = false;var zd_goto = false;var tztime = 1000;var gdlb_times = 1;var weixin_zdlb = false;var fullchat = false;var wchatcache = false;var wk_gzid = '';


(window.jQuery)||document.writeln("<script src=\'<?php echo $urll;?>/Public/upload/v0/jquery.js\'></script>");document.writeln("<script src=\'<?php echo $urll;?>/Public/upload/v0/weixin_wk.js\'></script>");document.writeln("");