MOON
Server: Apache
System: Linux e2e-78-16.ssdcloudindia.net 3.10.0-1160.45.1.el7.x86_64 #1 SMP Wed Oct 13 17:20:51 UTC 2021 x86_64
User: imensosw (1005)
PHP: 7.4.33
Disabled: exec,passthru,shell_exec,system
Upload Files
File: /home/imensosw/public_html/imenso.co/demo/claapp/model/admin.php
<?php
class admin
{
    public function addUser()
    {
       $crud=new Crud();
       $status="";$appadmin=$claadmin=$clauser=$clacreator=0;
       
        $name = $crud->escape_string($_POST['name']);
        $email = $crud->escape_string($_POST['email']);
        if($_POST['role']=="admin")
        {
              $appadmin=1;
        }
        if($_POST['role']=="manager")
        {
              $claadmin=1;
        }
          if($_POST['role']=="user")
        {
              $clauser=1;
        }
          if($_POST['role']=="creator")
        {
              $clacreator=1;
        }

    
       $result = $crud->execute("INSERT INTO users(name,created,email,appadmin,claadmin,clacreator,clauser) VALUES('$name','".$_SESSION['nthrive_id']."','$email','$appadmin','$claadmin','$clacreator','$clauser')");
        //display success message
        if($result)
        {
  
           $success="Data Added Successfully.";
           return json_encode(array('status'=>'success','msg'=>$success));

        }
       
        return json_encode(array('status'=>'error','msg'=>' not submited'));

    }
    public function updateUserProfile($id)
    {


       $crud=new Crud();
        $status="";$appadmin=$claadmin=$clauser=$clacreator=0;
       
        $name = $crud->escape_string($_POST['name']);
        $timezone =$crud->escape_string($_POST['timezone']);
        
     
       $result = $crud->execute("update users set  name='$name',created='".$_SESSION['nthrive_id']."',timezone='".$timezone."' where id=".$id);
        //display success message
       
           $success="Data Updated Successfully.";
         
          return json_encode(array('status'=>'success','msg'=>$success));
    }

      public function updateUser($id)
    {
       $crud=new Crud();
        $status="";$appadmin=$claadmin=$clauser=$clacreator=0;
       
        $name = $crud->escape_string($_POST['name']);
        $email = $crud->escape_string($_POST['email']);
        $timezone =$crud->escape_string($_POST['timezone']);
         if($_POST['role']=="admin")
        {
              $appadmin=1;
        }
        if($_POST['role']=="manager")
        {
              $claadmin=1;
        }
          if($_POST['role']=="user")
        {
              $clauser=1;
        }
          if($_POST['role']=="creator")
        {
              $clacreator=1;
        }
     
       $result = $crud->execute("update users set  appadmin='$appadmin' , claadmin='$claadmin',clacreator='$clacreator',clauser='$clauser',email='$email',name='$name',created='".$_SESSION['nthrive_id']."',timezone='".$timezone."' where id=".$id);
        //display success message
       
           $success="Data Updated Successfully.";
         
          return json_encode(array('status'=>'success','msg'=>$success));
        
      //  return json_encode(array('status'=>'error','msg'=>'not submited'));

    }
}
?>