Results 16 to 21 of 21
-
02-08-2004, 07:35 AM #16
agha damet montzerim to in hafte bazare entekhabate usera ziadand man home pagamo minvisam har moghe khasty bego midam bendaz
-
02-08-2004, 01:04 PM #17
www.abadgaran.ir/admin/check_password.asp keh dare !!!
in Az source shabihash :D
PHP Code:<!--#include FILE="common/inc_funcs.asp"-->
<!--#include File="common/inc_conn_open.asp"-->
<!--#include FILE="common/XMLfunctions.asp"-->
<%
on error resume next
Response.Expires = 60
Response.Expiresabsolute = Now() - 1
Response.AddHeader "pragma","no-cache"
Response.AddHeader "cache-control","private"
Response.CharSet="UTF-8"
session.CodePage = 65001
Response.CodePage=65001
Response.CacheControl = "no-cache"
Response.Buffer = true
'******************************************************************************************
'globals
'On Error Resume Next
dim UserName
dim Password
Dim strSQL,sresult
dim gadmobj
set gadmobj = server.CreateObject("AdvAdmin.AccountAdmin")
if (err) then
errorstr = err.De******ion
end if
ConnString = gadmobj.GetStrAdvReg("General","ConnString")
set gadmobj = nothing
Application("Connection1_ConnectionString") = ConnString
'******************************************************************************************
UserName = Trim(Request.Form("AdName"))
Password = Trim(Request.Form("pass1"))
if (Password <> "" and UserName <> "") then
Dim AdminObj
set AdminObj = server.createobject("AdvAdmin.AccountAdmin")
DomainName = Trim(AdminObj.GetMachineName)
sResult = AdminObj.Login(UserName,Password)
set conn = Server.createobject("ADODB.Connection")
set rs = Server.createobject("ADODB.RecordSet")
conn.Open Application("Connection1_ConnectionString")
if (sResult = 1) then ' it is a valid password
strSQL = "select AdminLevel,Owner from Admin_List where Name="&session("IsUTF")&"'"& UserName &"'"
set rs1 = conn.Execute(strSQL)
AdminLevel = trim(rs1.Fields("AdminLevel"))
AdminLevel = LCase(AdminLevel)
OwnerName = rs1.Fields("Owner")
if (AdminLevel = "host") or (AdminLevel = "reseller") or (AdminLevel = "webadmin") or (AdminLevel = "general") then
'//if adminlevel is host then make sure it is the same one that exists in the registry entry , so that a
'// unique host name is maintained in the system
if (AdminLevel = "host") then
defaulthost = AdminObj.GetStrAdvReg("General","defaulthost")
defaulthost = lcase(defaulthost)
luserName = lcase(UserName)
if (strComp(defaulthost,luserName) <> 0 ) then
Session("strError") = "Host name does not match with the default host name registered on the system , please contact the server administrator for the issue!"
Response.Redirect("default.asp?result=4")
Response.End
end if
end if
Session("AdminLevel") = AdminLevel
Session("ValidReq") = true
Session("Domain") = DomainName
Session("AdminName") = UserName
Session("AdminOwner")=OwnerName
Session("iPageSize") = GetItemsDisplayed(UserName,AdminLevel)
if Session("iPageSize") = "" then
Session("iPageSize") = 20
end if
set adminobject1=server.CreateObject ("Advadmin.Accountadmin")
DBString=adminobject1.GetStrAdvReg ("general","dbFlag")
session("DBString")=DBString
set adminobject1=nothing
'//////////////////Set the owners currency/////////////
strSQL = "select tblCurrency.CurrencySymbol,tblCurrency.DisplaySymbol From Admin_List,tblCurrency where Name="&session("IsUTF")&"'"&UserName&"' and Admin_List.CurrencyID=tblCurrency.CurrencyID"
rs.Open strSQL,conn,1,3
if not rs.EOF then
CS=rs.Fields("DisplaySymbol")
if len(CS) <=0 or isnull(CS) then
CS=rs.Fields("CurrencySymbol")
end if
Session("CurrencySymbol") = CS
else
Session("CurrencySymbol") = "$"
end if
rs.Close
strSQL = "select tblCurrency.CurrencySymbol,tblCurrency.DisplaySymbol From Admin_List,tblCurrency where Name="&session("IsUTF")&"'"&OwnerName&"' and Admin_List.CurrencyID=tblCurrency.CurrencyID"
rs.Open strSQL,conn,1,3
if not rs.EOF then
CS=rs.Fields("DisplaySymbol")
if len(CS) <=0 or isnull(CS) then
CS=rs.Fields("CurrencySymbol")
end if
Session("OwnerCurrencySymbol") = CS
else
Session("OwnerCurrencySymbol") = "$"
end if
rs.Close
'//////////////////End, Set the owners currency/////////////
'//////////////////Set Skin Options/////////////
strQuery = "select propvalue from adminprop where adminname="&session("IsUTF")&"'"& session("AdminName") &"' and propname='skinid'"
rs.Open strQuery,conn,1,3
if rs.eof then
GetPanelSkin session("AdminName"),con
else
if rs("propvalue") <> "" then
session("SkinID")= rs("propvalue")
else
GetPanelSkin session("AdminName"),con
end if
end if
rs.Close
session("SkinID") = replace(session("SkinID"),"::","/")
strQuery = "select propvalue from adminprop where adminname="&session("IsUTF")&"'"& session("AdminName") &"' and propname='iDigits'"
rs.Open strQuery,conn,1,3
if rs.eof then
rs.close
strQuery = "select propvalue from adminprop where adminname="&session("IsUTF")&"'"& Session("AdminOwner") &"' and propname='iDigits'"
rs.Open strQuery,conn,1,3
if rs.eof then
session("iDigits")= "2"
else
if rs("propvalue") <> "" then
session("iDigits")= rs("propvalue")
else
session("iDigits")= 2
end if
end if
else
if rs("propvalue") <> "" then
session("iDigits")= rs("propvalue")
else
session("iDigits")= 2
end if
end if
rs.Close
session("SkinID") = replace(session("SkinID"),"::","/")
'//////////////////End Set Skin Options/////////////
'//////////////////Set Language Options/////////////
if Request("language") = "" then
strQuery = "select * from Admin_List,Languages where Admin_List.Name="&session("IsUTF")&"'"& session("AdminName") &"' and Languages.languageID=Admin_list.languageID"
rs.Open strQuery,con,1,3
if rs.eof then
GetPanelLanguage session("AdminName"),con
else
if rs("language") <> "" then
Session("language") = rs("language")
Session("LanguageCode") = rs("charcode")
else
GetPanelLanguage session("AdminName"),con
end if
end if
rs.Close
else
''check the code and update adminlist
rs.Open "select * from Admin_List where Name='" & Session("AdminName") & "'",con,1,3
rs("LanguageID")=Request("language")
rs.Update
rs.Close
strQuery = "select * from Languages where LanguageID = " & Request("language")
rs.Open strQuery,con,1,3
if not rs.EOF then
Session("language") = rs("language")
Session("LanguageCode") = rs("charcode")
else
Session("language") = "English"
Session("LanguageCode") = "iso-8859-1"
end if
rs.Close
Response.****ies("Language") = language
end if
'Session("language") = language
'Session("LanguageCode") = LanguageCode
'//////////////////Set Language Options/////////////
'//////////// Panel Virtual Directory Name ////
strQuery = "select * from Adminprop where adminName="&session("IsUTF")&"'"& Trim(session("Adminname")) &"' and propname = 'AdminVDirName'"
rs.Open strQuery,conn,1,3
if not rs.eof then
VdirName = rs("propvalue")
else
VdirName = "Admin"
end if
rs.close
'//////////// End Panel Virtual Directory Name ////
'//////////// Check Database Type ////////////////
set gadmobj = server.CreateObject("AdvAdmin.AccountAdmin")
dbtype = gadmobj.GetStrAdvReg("General","dbFlag")
set gadmobj = nothing
if dbtype = "MS Access" then
session("IsUTF") = ""
else
session("IsUTF") = "N"
end if
'//////////// End Check Database Type ////////////////
if AdminLevel = "general" then
Dim ImagePath
Dim ImageUrl
Dim IsChanged
Dim StrXml
Dim SelectedSkin
SelectedSkin = session("skinid")
ParseSkin(SelectedSkin)
SelectedSkin = session("template") & "/" & session("skin")
' get the custom logo image paths
'call GetCustomLabel(ImagePath,ImageUrl,IsChanged)
call GetCustomLabelInformation(ImagePath,ImageUrl,IsChanged,con,session("AdminName"))
' get the css,image data packet
call GetGeneralDataPacket(ImagePath,ImageUrl,IsChanged,SelectedSkin,StrXml)
Response.Redirect("accounts/chgpass.asp")
else
if trim(session("Language")) = "" then
session("Language") = "English"
end if
Response.Redirect("main.asp")
end if
else
conn.Close
Session("strError") = "Either user name or password is invalid"
Response.Redirect("default.asp?result=3")
end if
else
conn.Close
'if (AdminObj.GetDWordAdvReg("General","EnableEventLog") = 1) then
' AdminObj.RegisterEventlog "error","failed Attempt to login to HC , the login name was " & UserNameional
end if
Session("strError") = AdminObj.ErrorReason
if (session("strerror") = "") then
session("strerror") = errorstr
end if
Response.Redirect("default.asp?result=2")
end if
else
Session("strError") = "UserName and Password cannot be empty"
Response.Redirect("default.asp?result=1")
end if
%>
<html>
<head>
<title>Check Password</title>
</head>
<body background="Black" bgcolor="white">
An unexpected error has occured
</body>
</html>
<!--#include File="common/inc_conn_close.asp"-->
Linke Asli vorodesh
[url]www.abadgaran.ir/admin/main.asp[/url]
va va... :D
-
02-08-2004, 05:05 PM #18
agha in linki ke dadi expire session dad chi kar ****m ?
-
02-09-2004, 10:41 AM #19
:D
az Jadid tarin noskhe estefade shode...
No Chach dare hatta ba user passworde admin beri 1 min be chizi dast nazani Exprid Se... mide ;)
www.abadgaran.ir/admin/accounts/chgpass.asp
http://www.abadgaran.ir/admin/accoun...teuserdesc.asp
www.abadgaran.ir/admin/Logs/... ;)
www.abadgaran.ir/admin/common/sessionexpire.asp
www.abadgaran.ir/admin/common/sessionexpired.asp
www.abadgaran.ir/admin/common/relogin.asp XXX ;)
PHP Code:<!--#include FILE="inc_funcs.asp"-->
<!--#include FILE="inc_conn_open.asp"-->
<!--#include FILE="XMLFunctions.asp"-->
<%
if (Request.QueryString("action") = 1) then
UserName = Request.Form("AdName")
Password = Request.Form("pass1")
Dim AdminObj
set AdminObj = server.createobject("AdvAdmin.AccountAdmin")
Application("Connection1_ConnectionString") = AdminObj.GetStrAdvReg("General","ConnString")
DomainName = Trim(AdminObj.GetMachineName)
sResult = AdminObj.Login(UserName,Password)
set conn = Server.createobject("ADODB.Connection")
set rs = Server.createobject("ADODB.RecordSet")
conn.Open Application("Connection1_ConnectionString")
'if Err then Response.Write Err.de******ion
if (sResult = 1) then ' it is a valid password
strSQL = "select AdminLevel,Owner From Admin_List where Name="&session("IsUTF")&"'"&UserName&"'"
set rs1 = conn.Execute(strSQL)
if not rs1.eof then
AdminLevel = trim(rs1.Fields("AdminLevel"))
OwnerName = trim(rs1.Fields("Owner"))
end if
AdminLevel = LCase(AdminLevel)
if (AdminLevel = "host") or (AdminLevel = "reseller") or (AdminLevel = "webadmin") or (AdminLevel = "general") then
Session("AdminLevel") = AdminLevel
Session("ValidReq") = true
Session("Domain") = DomainName
Session("AdminName") = UserName
Session("AdminOwner")=OwnerName
Session("iPageSize") = GetItemsDisplayed(UserName,AdminLevel)
if Session("iPageSize") = "" then
Session("iPageSize") = 20
end if
set adminobject1=server.CreateObject ("Advadmin.Accountadmin")
DBString=adminobject1.GetStrAdvReg ("general","dbFlag")
session("DBString")=DBString
set adminobject1=nothing
'//////////////////Set the owners currency/////////////
strSQL = "select tblCurrency.CurrencySymbol,tblCurrency.DisplaySymbol From Admin_List,tblCurrency where Name="&session("IsUTF")&"'"&UserName&"' and Admin_List.CurrencyID=tblCurrency.CurrencyID"
rs.Open strSQL,conn,1,3
if not rs.EOF then
CS=rs.Fields("DisplaySymbol")
if len(CS) <0 or isnull(CS) then
CS=rs.Fields("CurrencySymbol")
end if
Session("CurrencySymbol") = CS
else
Session("CurrencySymbol") = "$"
end if
rs.Close
strSQL = "select tblCurrency.CurrencySymbol,tblCurrency.DisplaySymbol From Admin_List,tblCurrency where Name="&session("IsUTF")&"'"&OwnerName&"' and Admin_List.CurrencyID=tblCurrency.CurrencyID"
rs.Open strSQL,conn,1,3
if not rs.EOF then
CS=rs.Fields("DisplaySymbol")
if len(CS) <0 or isnull(CS) then
CS=rs.Fields("CurrencySymbol")
end if
Session("OwnerCurrencySymbol") = CS
else
Session("OwnerCurrencySymbol") = "$"
end if
rs.Close
'//////////////////End, Set the owners currency/////////////
'//////////////////Start numeric display options/////////////
strQuery = "select propvalue from adminprop where adminname="&session("IsUTF")&"'"& session("AdminName") &"' and propname='iDigits'"
rs.Open strQuery,con,1,3
if rs.eof then
rs.close
strQuery = "select propvalue from adminprop where adminname="&session("IsUTF")&"'"& Session("AdminOwner") &"' and propname='iDigits'"
rs.Open strQuery,con,1,3
if rs.eof then
session("iDigits")= "2"
else
if rs("propvalue") <> "" then
session("iDigits")= rs("propvalue")
else
session("iDigits")= 2
end if
end if
else
if rs("propvalue") <> "" then
session("iDigits")= rs("propvalue")
else
session("iDigits")= 2
end if
end if
rs.Close
'//////////////////End numeric display options/////////////
'//////////////////Set Skin Options/////////////
strQuery = "select propvalue from adminprop where adminname="&session("IsUTF")&"'"& session("AdminName") &"' and propname='skinid'"
rs.Open strQuery,conn,1,3
if rs.eof then
GetPanelSkin session("AdminName"),con
else
if rs("propvalue") <> "" then
session("SkinID")= rs("propvalue")
else
GetPanelSkin session("AdminName"),con
end if
end if
rs.Close
session("SkinID") = replace(session("SkinID"),"::","/")
'//////////////////End Set Skin Options/////////////
'//////////////////Set Language Options/////////////
if Request("language") = "" then
strQuery = "select * from Admin_List,Languages where Admin_List.Name="&session("IsUTF")&"'"& session("AdminName") &"' and Languages.languageID=Admin_list.languageID"
rs.Open strQuery,con,1,3
if rs.eof then
GetPanelLanguage session("AdminName"),con
else
if rs("language") <> "" then
Session("language") = rs("language")
Session("LanguageCode") = rs("charcode")
else
GetPanelLanguage session("AdminName"),con
end if
end if
rs.Close
else
'check the code and update adminlist
rs.Open "Admin_List",con,1,3
rs("LanguageID")=Request("language")
rs.Update
rs.Close
strQuery = "select * from Languages where LanguageID = " & Request("language")
rs.Open strQuery,con,1,3
if not rs.EOF then
Session("language") = rs("language")
Session("LanguageCode") = rs("charcode")
else
Session("language") = "English"
Session("LanguageCode") = "iso-8859-1"
end if
rs.Close
Response.****ies("Language") = language
end if
'Session("language") = language
'Session("LanguageCode") = LanguageCode
'//////////////////Set Language Options/////////////
'//////////// Panel Virtual Directory Name ////
strQuery = "select * from Adminprop where adminName="&session("IsUTF")&"'"& Trim(session("Adminname")) &"' and propname = 'AdminVDirName'"
rs.Open strQuery,conn,1,3
if not rs.eof then
VdirName = rs("propvalue")
else
VdirName = "Admin"
end if
rs.close
'//////////// End Panel Virtual Directory Name ////
'//////////// Check Database Type ////////////////
set gadmobj = server.CreateObject("AdvAdmin.AccountAdmin")
dbtype = gadmobj.GetStrAdvReg("General","dbFlag")
set gadmobj = nothing
if dbtype = "MS Access" then
session("IsUTF") = ""
else
session("IsUTF") = "N"
end if
'//////////// End Check Database Type ////////////////
Dim ImagePath
Dim ImageUrl
Dim IsChanged
Dim StrXml
Dim SelectedSkin
SelectedSkin = session("skinid")
ParseSkin(SelectedSkin)
call GetCustomLabelInformation(ImagePath,ImageUrl,IsChanged,con,session("AdminName"))
' get the css,image data packet
call GetGeneralDataPacket(ImagePath,ImageUrl,IsChanged,SelectedSkin,StrXml)
closewindow = "1"
else
conn.Close
errorStr = "<font size='1'>Users not found in the hosting controller database</FONT>"
end if
else
conn.Close
Dim displayedError
displayedError = 0
if sResult = 0 then
errorStr=AdminObj.ErrorReason
displayedError=1
end if
if displayedError="0" then
errorStr=AdminObj.ErrorReason
end if
end if
end if
'#the ****ies value
Dim str****ieValueSet
Dim str****ieValueRead
Dim Is****ie
str****ieValueSet = "true"
str****ieValueRead = "false"
Is****ie = "1"
' Set a test ****ie with a value and an expiration date.
Response.****ies("****ie_test") = str****ieValueSet
' Read the ****ie to see if it exists.
str****ieValueRead = Request.****ies("****ie_test")
Response.****ies("testc").Expires = #January 01, 2020#
If str****ieValueSet = str****ieValueRead Then
'check if the ****ie exists
If Request.****ies("Language") = "" Then
Response.****ies("TemplateID")= "Standard"
Response.****ies("TemplateID").Expires = #January 01, 2020#
Response.****ies("SkinID") = "Blue"
Response.****ies("SkinID").Expires = #January 01, 2020#
Response.****ies("Language") = "English"
Response.****ies("Language").Expires = #January 01, 2009#
Response.****ies("showhelp") = "0"
Response.****ies("showhelp").Expires = #January 01, 2009#
Response.****ies("showlinks") = "1"
Response.****ies("showlinks").Expires = #January 01, 2009#
Template = Request.****ies("TemplateID")
Skin = Request.****ies("SkinID")
Language = Request.****ies("Language")
else
'get ****ie value
Template = Request.****ies("TemplateID")
Skin = Request.****ies("SkinID")
Language = Request.****ies("Language")
end if
Else
Template = "Standard"
Skin = "Blue"
Language = "English"
Is****ie = "0"
End If
if Request.Form("language") <> "" then
strquery = "select Language from languages where languageID = " & Request.Form("language")
rs.open strquery,con,1,3
if not rs.EOF then
Language = rs("language")
end if
rs.close
end if
session("Language") = Language
'#the ****ies value
strXMl = "<data>" & vbcrlf
strXMl = strXMl & "<css-data>"
strXMl = strXMl & "<main-css-path>../skins/"& Template &"/"& Skin & "/HCStyles.css</main-css-path>"
strXMl = strXMl & "<menu-css-path>../skins/"& Template &"/"& Skin & "/hcMenuStyles.css</menu-css-path>"
strXMl = strXMl & "<chelp-js-path>../skins/js******s/jslib.js</chelp-js-path>"
strXMl = strXMl & "</css-data>"
strXMl = strXMl & "<image-data>"
strXMl = strXMl & "<def-image-path>../skins/"& Template &"/"& Skin & "/images/</def-image-path>"
strXMl = strXMl & "<login-image>../skins/"& Template &"/"& Skin & "/images/login.gif</login-image>"
rs.open "select Name from Admin_list where AdminLevel = 'host'" ,con,1,3
if not rs.eof then
HostCPName rs("Name"),con
else
Session("CPName") = "Hosting Controller"
end if
rs.close
StrXml = StrXml & vbTab & "<panel-name><![CDATA[" & Session("CPName") & "]]></panel-name>" & vbcrlf
strXMl = strXMl & "</image-data>"
strXMl = strXMl + "<query-data>"
strQuery = "select * from languages"
strXMl = QueryTOXml(strQuery,"get-languages")
strXMl = strXMl + "</query-data>"
strXMl = strXMl + "<gen-data>" + vbCrLf
strXMl = strXMl + "<selected-skin>" & template & "/" & skin & "</selected-skin>" + vbCrLf
strXMl = strXMl + "<selected-skin-id>" & skin & "</selected-skin-id>" + vbCrLf
strXMl = strXMl + "<selected-template-id>" & Template & "</selected-template-id>" + vbCrLf
strXMl = strXMl + "<selected-language>" & Language & "</selected-language>" + vbCrLf
strXMl=strXMl & "<include-template-id>relogintemplate.xsl</include-template-id>" & vbcrlf & vbcrlf
strXMl=strXMl & "<include-path-info>../../../skins/</include-path-info>" & vbcrlf & vbcrlf
strXMl = strXMl + "<is-****ie>" & Is****ie & "</is-****ie>" + vbCrLf
strXMl = strXMl + "<logged-user>" & Request("UserName") & "</logged-user>" + vbCrLf
strXMl = strXMl + "<close-window>" & closewindow & "</close-window>" + vbCrLf
if sResult = 0 then
strXMl = strXMl + "<is-message-text>" + vbCrLf
strXMl = strXMl + vbTab + "<result-is-success>0</result-is-success><result-message-text>" & errorStr & "</result-message-text>" & vbCrLf
strXMl = strXMl + "</is-message-text>" + vbCrLf
end if
strXMl = strXMl + "</gen-data>"
ErrorStringPacket = ""
if Request.QueryString("Result").Count = 1 then
ErrorStringPacket = GetErrorPacket(Request.QueryString("result"),"")
end if
' strXMl = GetGenDataPacket(chelpcode,ErrorStringPacket,"logintemplate.xsl","../../../skins/","includes.xsl")
strXMl = strXMl + "</data>"
' Response.Write session("language")
Response.End
xslpath = getxslpath(Session("adminname"))
xslpath = xslpath & session("language") & "\common\relogin.xsl"
response.write(OneTemplateTransformDocument(strXMl,xslpath))
%>
<!--#include FILE="inc_conn_close.asp"-->
-
02-09-2004, 10:58 AM #20
Database Forum in Control in waras ;)
www.abadgaran.ir/admin/forum/db/forum.mdb :D wali ;)
http://www.abadgaran.ir/admin/logs/H...otaService.csv keh Lock Shode akhe use mishe :D chizaye jalebi dare
Wa Wa... :D
-
02-20-2004, 03:14 PM #21
ey agha nemishe ina bayad yekare dige kard bashoon hame saithaye hezbolahi injast lamasab az naja ta basijo ina in dana ham tanha rahi ke base man bood ine bood ke 3 rooz in RDC crack konam ke javab nadad motaefane bazam nabayd na omid shod beshe ye index ro in dana endakht ke hack shode khili hal mide
Similar Threads
-
Bacheha 1 Negah Bendazid
By s_hahroo_z in forum بخش هک و سکیوریتیReplies: 3Last Post: 09-07-2004, 03:16 AM -
mokhlese hamegi
By small.mouse in forum بخش هک و سکیوریتیReplies: 4Last Post: 07-07-2004, 06:26 AM -
bacheha movazeb bashid
By cisco in forum بخش هک و سکیوریتیReplies: 1Last Post: 05-05-2004, 11:16 PM -
Hamle Be Site www.satcom.ir
By mahdi_hexboy in forum بخش هک و سکیوریتیReplies: 27Last Post: 03-11-2004, 02:07 PM -
Barrasi Log Site DANA.ir ( Abadgaran.ir )
By bl2k in forum بخش هک و سکیوریتیReplies: 6Last Post: 02-16-2004, 10:32 AM


Reply With Quote