Tul xxx Tul
User / IP
:
216.73.216.227
Host / Server
:
45.84.207.204 / aircan.me
System
:
Linux lt-bnk-web1726.main-hosting.eu 5.14.0-611.36.1.el9_7.x86_64 #1 SMP PREEMPT_DYNAMIC Tue Mar 3 11:23:52 EST 2026 x86_64
Command
|
Upload
|
Create
Mass Deface
|
Jumping
|
Symlink
|
Reverse Shell
Ping
|
Port Scan
|
DNS Lookup
|
Whois
|
Header
|
cURL
:
/
home
/
u931257429
/
domains
/
aircan.me
/
public_html
/
inmobiliaria
/
admin
/
Viewing: propertyadd.php
<?php session_start(); require("config.php"); ////code if(!isset($_SESSION['auser'])) { header("location:index.php"); } //// code insert //// add code $error=""; $msg=""; if(isset($_POST['add'])) { $title=$_POST['title']; $content=$_POST['content']; $ptype=$_POST['ptype']; $bhk=$_POST['bhk']; $bed=$_POST['bed']; $balc=$_POST['balc']; $hall=$_POST['hall']; $stype=$_POST['stype']; $bath=$_POST['bath']; $kitc=$_POST['kitc']; $floor=$_POST['floor']; $price=$_POST['price']; $city=$_POST['city']; $asize=$_POST['asize']; $loc=$_POST['loc']; $state=$_POST['state']; $status = isset($_POST['status']) ? $_POST['status'] : ''; if($status === '') { $status = 'available'; } $uid = isset($_POST['uid']) ? trim($_POST['uid']) : ''; if($uid === '') { $uid = 0; } $uid = (int)$uid; $feature=$_POST['feature']; $totalfloor=$_POST['totalfl']; $aimage=$_FILES['aimage']['name']; $aimage1=$_FILES['aimage1']['name']; $aimage2=$_FILES['aimage2']['name']; $aimage3=$_FILES['aimage3']['name']; $aimage4=$_FILES['aimage4']['name']; $fimage=$_FILES['fimage']['name']; $fimage1=$_FILES['fimage1']['name']; $fimage2=$_FILES['fimage2']['name']; $isFeatured = isset($_POST['isFeatured']) ? $_POST['isFeatured'] : ''; if($isFeatured === '') { $isFeatured = 0; } $temp_name =$_FILES['aimage']['tmp_name']; $temp_name1 =$_FILES['aimage1']['tmp_name']; $temp_name2 =$_FILES['aimage2']['tmp_name']; $temp_name3 =$_FILES['aimage3']['tmp_name']; $temp_name4 =$_FILES['aimage4']['tmp_name']; $temp_name5 =$_FILES['fimage']['tmp_name']; $temp_name6 =$_FILES['fimage1']['tmp_name']; $temp_name7 =$_FILES['fimage2']['tmp_name']; if(empty($aimage)) { $error="<p class='alert alert-warning'>Por favor suba al menos la primera imagen</p>"; } else { move_uploaded_file($temp_name,"property/$aimage"); if(!empty($aimage1)) move_uploaded_file($temp_name1,"property/$aimage1"); if(!empty($aimage2)) move_uploaded_file($temp_name2,"property/$aimage2"); if(!empty($aimage3)) move_uploaded_file($temp_name3,"property/$aimage3"); if(!empty($aimage4)) move_uploaded_file($temp_name4,"property/$aimage4"); if(!empty($fimage)) move_uploaded_file($temp_name5,"property/$fimage"); if(!empty($fimage1)) move_uploaded_file($temp_name6,"property/$fimage1"); if(!empty($fimage2)) move_uploaded_file($temp_name7,"property/$fimage2"); $sql="INSERT INTO property (title,pcontent,type,bhk,stype,bedroom,bathroom,balcony,kitchen,hall,floor,size,price,location,city,state,feature,pimage,pimage1,pimage2,pimage3,pimage4,uid,status,mapimage,topmapimage,groundmapimage,totalfloor,isFeatured) VALUES('$title','$content','$ptype','$bhk','$stype','$bed','$bath','$balc','$kitc','$hall','$floor','$asize','$price', '$loc','$city','$state','$feature','$aimage','$aimage1','$aimage2','$aimage3','$aimage4','$uid','$status','$fimage','$fimage1','$fimage2','$totalfloor','$isFeatured')"; $result=mysqli_query($con,$sql); if($result) { $msg="<p class='alert alert-success'>Propiedad Insertada Exitosamente</p>"; } else { $error="<p class='alert alert-warning'>Algo salió mal. Por favor intente de nuevo</p>"; } } } ?> <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width, initial-scale=1.0, user-scalable=0"> <title>LM HOMES | Propiedad</title> <!-- Favicon --> <link rel="shortcut icon" type="image/png" href="../images/logo/logo.png"> <!-- Bootstrap CSS --> <link rel="stylesheet" href="assets/css/bootstrap.min.css"> <!-- Fontawesome CSS --> <link rel="stylesheet" href="assets/css/font-awesome.min.css"> <!-- Feathericon CSS --> <link rel="stylesheet" href="assets/css/feathericon.min.css"> <!-- Main CSS --> <link rel="stylesheet" href="assets/css/style.css"> <!-- Modern Admin 2026 CSS --> <link rel="stylesheet" href="assets/css/modern-admin-2026.css"> <!--[if lt IE 9]> <script src="assets/js/html5shiv.min.js"></script> <script src="assets/js/respond.min.js"></script> <![endif]--> </head> <body> <!-- Header --> <?php include("header.php"); ?> <!-- /Sidebar --> <!-- Page Wrapper --> <div class="page-wrapper"> <div class="content container-fluid"> <!-- Page Header --> <div class="page-header"> <div class="row"> <div class="col"> <h3 class="page-title">Propiedad</h3> <ul class="breadcrumb"> <li class="breadcrumb-item"><a href="dashboard.php">Panel de Control</a></li> <li class="breadcrumb-item active">Propiedad</li> </ul> </div> </div> </div> <!-- /Page Header --> <div class="row"> <div class="col-md-12"> <div class="card"> <div class="card-header"> <h4 class="card-title">Agregar Detalles de Propiedad</h4> </div> <form method="post" enctype="multipart/form-data"> <div class="card-body"> <h5 class="card-title">Detalle de Propiedad</h5> <?php echo $error; ?> <?php echo $msg; ?> <div class="row"> <div class="col-xl-12"> <div class="form-group row"> <label class="col-lg-2 col-form-label">Título</label> <div class="col-lg-9"> <input type="text" class="form-control" name="title" required placeholder="Ingrese Título"> </div> </div> <div class="form-group row"> <label class="col-lg-2 col-form-label">Contenido</label> <div class="col-lg-9"> <textarea class="tinymce form-control" name="content" rows="10" cols="30"></textarea> </div> </div> <div class="form-group row"> <label class="col-lg-2 col-form-label">Agente / Usuario</label> <div class="col-lg-9"> <select class="form-control" name="uid"> <option value="">Sin asignación</option> <?php $users = mysqli_query($con, "SELECT uid, uname, uemail, utype FROM user WHERE utype IN ('agent','user') ORDER BY uname ASC"); while($u = mysqli_fetch_assoc($users)) { ?> <option value="<?php echo (int)$u['uid']; ?>"><?php echo htmlspecialchars($u['uname'], ENT_QUOTES) . ' (' . htmlspecialchars($u['utype'], ENT_QUOTES) . ') - ' . htmlspecialchars($u['uemail'], ENT_QUOTES); ?></option> <?php } ?> </select> </div> </div> </div> <div class="col-xl-6"> <div class="form-group row"> <label class="col-lg-3 col-form-label">Tipo de Propiedad</label> <div class="col-lg-9"> <select class="form-control" required name="ptype"> <option value="">Seleccionar Tipo</option> <option value="apartment">Apartamento</option> <option value="flat">Piso</option> <option value="building">Edificio</option> <option value="house">Casa</option> <option value="villa">Villa</option> <option value="office">Oficina</option> </select> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Tipo de Venta</label> <div class="col-lg-9"> <select class="form-control" required name="stype"> <option value="">Seleccionar Estado</option> <option value="rent">Alquiler</option> <option value="sale">Venta</option> </select> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Baño</label> <div class="col-lg-9"> <input type="text" class="form-control" name="bath" required placeholder="Ingrese Baño (solo no 1 a 10)"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Cocina</label> <div class="col-lg-9"> <input type="text" class="form-control" name="kitc" required placeholder="Ingrese Cocina (solo no 1 a 10)"> </div> </div> </div> <div class="col-xl-6"> <div class="form-group row mb-3"> <label class="col-lg-3 col-form-label">Seleccionar BHK</label> <div class="col-lg-9"> <select class="form-control" required name="bhk"> <option value="">Seleccionar BHK</option> <option value="1 BHK">1 BHK</option> <option value="2 BHK">2 BHK</option> <option value="3 BHK">3 BHK</option> <option value="4 BHK">4 BHK</option> <option value="5 BHK">5 BHK</option> <option value="1,2 BHK">1,2 BHK</option> <option value="2,3 BHK">2,3 BHK</option> <option value="2,3,4 BHK">2,3,4 BHK</option> </select> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Habitación</label> <div class="col-lg-9"> <input type="text" class="form-control" name="bed" required placeholder="Ingrese Habitación (solo no 1 a 10)"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Balcón</label> <div class="col-lg-9"> <input type="text" class="form-control" name="balc" required placeholder="Ingrese Balcón (solo no 1 a 10)"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Sala</label> <div class="col-lg-9"> <input type="text" class="form-control" name="hall" required placeholder="Ingrese Sala (solo no 1 a 10)"> </div> </div> </div> </div> <h4 class="card-title">Precio y Ubicación</h4> <div class="row"> <div class="col-xl-6"> <div class="form-group row"> <label class="col-lg-3 col-form-label">Floor</label> <div class="col-lg-9"> <select class="form-control" required name="floor"> <option value="">Select Floor</option> <option value="1st Floor">1st Floor</option> <option value="2nd Floor">2nd Floor</option> <option value="3rd Floor">3rd Floor</option> <option value="4th Floor">4th Floor</option> <option value="5th Floor">5th Floor</option> </select> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Price</label> <div class="col-lg-9"> <input type="text" class="form-control" name="price" required placeholder="Enter Price"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">State</label> <div class="col-lg-9"> <select class="form-control" required name="state" id="stateSelect"> <option value="">Select State</option> <?php $states = mysqli_query($con, "SELECT * FROM state"); while($s = mysqli_fetch_assoc($states)) { ?> <option value="<?php echo $s['sname']; ?>" data-sid="<?php echo $s['sid']; ?>"><?php echo $s['sname']; ?></option> <?php } ?> </select> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">City</label> <div class="col-lg-9"> <select class="form-control" required name="city" id="citySelect"> <option value="">Select City</option> <?php $cities = mysqli_query($con, "SELECT * FROM city"); while($c = mysqli_fetch_assoc($cities)) { ?> <option value="<?php echo $c['cname']; ?>" data-sid="<?php echo $c['sid']; ?>"><?php echo $c['cname']; ?></option> <?php } ?> </select> </div> </div> </div> <div class="col-xl-6"> <div class="form-group row"> <label class="col-lg-3 col-form-label">Total Floor</label> <div class="col-lg-9"> <select class="form-control" required name="totalfl"> <option value="">Select Floor</option> <option value="1 Floor">1 Floor</option> <option value="2 Floor">2 Floor</option> <option value="3 Floor">3 Floor</option> <option value="4 Floor">4 Floor</option> <option value="5 Floor">5 Floor</option> <option value="6 Floor">6 Floor</option> <option value="7 Floor">7 Floor</option> <option value="8 Floor">8 Floor</option> <option value="9 Floor">9 Floor</option> <option value="10 Floor">10 Floor</option> <option value="11 Floor">11 Floor</option> <option value="12 Floor">12 Floor</option> <option value="13 Floor">13 Floor</option> <option value="14 Floor">14 Floor</option> <option value="15 Floor">15 Floor</option> </select> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Area Size</label> <div class="col-lg-9"> <input type="text" class="form-control" name="asize" required placeholder="Enter Area Size (in sqrt)"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Address</label> <div class="col-lg-9"> <input type="text" class="form-control" name="loc" required placeholder="Enter Address"> </div> </div> </div> </div> <div class="form-group row"> <label class="col-lg-2 col-form-label">Feature</label> <div class="col-lg-9"> <p class="alert alert-danger">* Important Please Do Not Remove Below Content Only Change <b>Yes</b> Or <b>No</b> or Details and Do Not Add More Details</p> <textarea class="tinymce form-control" name="feature" rows="10" cols="30"> <!---feature area start---> <div class="col-md-4"> <ul> <li class="mb-3"><span class="text-secondary font-weight-bold">Property Age : </span>10 Years</li> <li class="mb-3"><span class="text-secondary font-weight-bold">Swiming Pool : </span>Yes</li> <li class="mb-3"><span class="text-secondary font-weight-bold">Parking : </span>Yes</li> <li class="mb-3"><span class="text-secondary font-weight-bold">GYM : </span>Yes</li> </ul> </div> <div class="col-md-4"> <ul> <li class="mb-3"><span class="text-secondary font-weight-bold">Type : </span>Apartment</li> <li class="mb-3"><span class="text-secondary font-weight-bold">Security : </span>Yes</li> <li class="mb-3"><span class="text-secondary font-weight-bold">Dining Capacity : </span>10 People</li> <li class="mb-3"><span class="text-secondary font-weight-bold">Church/Temple : </span>No</li> </ul> </div> <div class="col-md-4"> <ul> <li class="mb-3"><span class="text-secondary font-weight-bold">3rd Party : </span>No</li> <li class="mb-3"><span class="text-secondary font-weight-bold">Alivator : </span>Yes</li> <li class="mb-3"><span class="text-secondary font-weight-bold">CCTV : </span>Yes</li> <li class="mb-3"><span class="text-secondary font-weight-bold">Water Supply : </span>Ground Water / Tank</li> </ul> </div> <!---feature area end----> </textarea> </div> </div> <h4 class="card-title">Image & Status</h4> <div class="row"> <div class="col-xl-6"> <div class="form-group row"> <label class="col-lg-3 col-form-label">Image</label> <div class="col-lg-9"> <input class="form-control" name="aimage" type="file" required=""> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Image 2</label> <div class="col-lg-9"> <input class="form-control" name="aimage2" type="file"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Image 4</label> <div class="col-lg-9"> <input class="form-control" name="aimage4" type="file"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Status</label> <div class="col-lg-9"> <select class="form-control" name="status"> <option value="">Select Status</option> <option value="available">Available</option> <option value="sold out">Sold Out</option> </select> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Basement Floor Plan Image</label> <div class="col-lg-9"> <input class="form-control" name="fimage1" type="file"> </div> </div> </div> <div class="col-xl-6"> <div class="form-group row"> <label class="col-lg-3 col-form-label">Image 1</label> <div class="col-lg-9"> <input class="form-control" name="aimage1" type="file"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">image 3</label> <div class="col-lg-9"> <input class="form-control" name="aimage3" type="file"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Floor Plan Image</label> <div class="col-lg-9"> <input class="form-control" name="fimage" type="file"> </div> </div> <div class="form-group row"> <label class="col-lg-3 col-form-label">Ground Floor Plan Image</label> <div class="col-lg-9"> <input class="form-control" name="fimage2" type="file"> </div> </div> </div> </div> <hr> <div class="row"> <div class="col-md-6"> <div class="form-group row"> <label class="col-lg-3 col-form-label"><b>Is Featured?</b></label> <div class="col-lg-9"> <select class="form-control" name="isFeatured"> <option value="">Select...</option> <option value="0">No</option> <option value="1">Yes</option> </select> </div> </div> </div> </div> <input type="submit" value="Submit" class="btn btn-primary"name="add" style="margin-left:200px;"> </div> </form> </div> </div> </div> </div> </div> <!-- /Main Wrapper --> <!-- jQuery --> <script src="assets/js/jquery-3.2.1.min.js"></script> <script src="assets/plugins/tinymce/tinymce.min.js"></script> <script src="assets/plugins/tinymce/init-tinymce.min.js"></script> <!-- Bootstrap Core JS --> <script src="assets/js/popper.min.js"></script> <script src="assets/js/bootstrap.min.js"></script> <!-- Slimscroll JS --> <script src="assets/plugins/slimscroll/jquery.slimscroll.min.js"></script> <!-- Custom JS --> <script src="assets/js/script.js"></script> <script> (function () { function filterCities() { var stateSel = document.getElementById('stateSelect'); var citySel = document.getElementById('citySelect'); if (!stateSel || !citySel) return; var stateOpt = stateSel.options[stateSel.selectedIndex]; var sid = stateOpt ? stateOpt.getAttribute('data-sid') : ''; var selectedStillVisible = false; for (var i = 0; i < citySel.options.length; i++) { var opt = citySel.options[i]; if (i === 0) { opt.hidden = false; continue; } var optSid = opt.getAttribute('data-sid'); var show = !!sid && optSid === sid; opt.hidden = !show; if (show && opt.selected) selectedStillVisible = true; } if (citySel.value && !selectedStillVisible) { citySel.value = ''; } } document.addEventListener('DOMContentLoaded', function () { var stateSel = document.getElementById('stateSelect'); if (stateSel) stateSel.addEventListener('change', filterCities); filterCities(); }); })(); </script> </body> </html>
Coded With 💗 by
0x6ick