UnknownSec Bypass
403
:
/
var
/
www
/
stbilling
/
cpanel
/ [
drwxrwxr-x
]
Menu
Upload
Mass depes
Mass delete
Terminal
Info server
About
name :
manage_temp_bill.php
<?php require_once "../config.php"; session_start(); $userid=$_SESSION['userid']; $finyearid=$_SESSION['financialyearid']; $partyid= $_POST['partyid']; $billdate = $_POST['billdate']; $stateid = $_POST['stateid']; $districtid = $_POST['districtid']; $productid = $_POST['productid']; $qty = $_POST['qty']; $rate = $_POST['rate']; $discount = $_POST['discount']; $taxableamount = $_POST['taxableamount']; $cgst = $_POST['cgst']; $sgst = $_POST['sgst']; $igst = $_POST['igst']; $netamount = $_POST['netamount']; $billno = $_POST['tempplanno']; $hdid = $_POST['hdid']; $btnopration = $_POST['btnopration']; $creationdatetime = date("Y-m-d H:m:s"); $finyear="2022-23"; $message= ""; $cnt=""; $sno=0; $grossamt=0; $cgstamt=0; $sgstamt=0; $igstamt=0; $accountmasterid=0; if($discount=="") $discount=0; $grossamt= (float)$qty* (float)$rate; if($cgst!=0 && $sgst!=0) { $cgstamt= (float)$taxableamount*(float)$cgst/100; $sgstamt= (float)$taxableamount*(float)$sgst/100; } else $igstamt= (float)$taxableamount*(float)$igst/100; $query = "select * from temptransactiondetailstb where mainvoucherno='".$billno."' and isdeleted='" .$notdeleted."' "; $result = mysqli_query($conn, $query); $sno = intval(mysqli_num_rows($result)) + 1; $query = "select count(0) as count from temptransactiondetailstb where mainvoucherno='".$billno."' and productid='".$productid."' and isdeleted='".$notdeleted."'"; $result = mysqli_query($conn,$query); while($row = mysqli_fetch_array($result)) { $message= $row["count"]; } $query = "select accountmasterid from accountmastertb where accountname='sales' and identifier=1 and status='".$notdeleted."'"; $result = mysqli_query($conn,$query); while($row = mysqli_fetch_array($result)) { $accountmasterid= $row["accountmasterid"]; } if($btnopration=="Add") { if($message=="0") { $query="insert into temptransactiondetailstb(rowno,transactiondate,productid,qty,rate,discount,taxablevalue,cgstpercent,cgstamt,sgstpercent,sgstamt,igstpercent, igstamt,amount,vouchertypeid,partymasterid,accountmasterid,accountamount,partyamount,financialyearid,createdbyid,mainvoucherno, creationdatetime,isdeleted,placeofsupply) values('".$sno."','".$billdate."','".$productid."','".$qty."','".$rate."','".$discount."','".$taxableamount."','".$cgst."','".$cgstamt."', '".$sgst."','".$sgstamt."','".$igst."','".$igstamt."','".$netamount."',3,'".$partyid."','".$accountmasterid."','".$netamount."','".$netamount."', '".$finyearid."','".$userid."','".$billno."','".$creationdatetime."','".$notdeleted."','". $stateid."')"; $result = mysqli_query($conn, $query); if($result==true) $message="1"; } else{ $message="2"; } } else if($btnopration=="Edit"){ $query = "select count(0) as count from temptransactiondetailstb where transactiondetailsid!='".$hdid ."' and mainvoucherno='".$billno."' and productid='".$productid."' and isdeleted='".$notdeleted."'"; $result = mysqli_query($conn,$query); while($row = mysqli_fetch_array($result)) { $message= $row["count"]; } if($message=="0") { $query="update temptransactiondetailstb set transactiondate='".$billdate."',productid='".$productid."',qty='".$qty."', rate='".$rate."',discount='".$discount."',taxablevalue='".$taxableamount."',cgstpercent='".$cgst."',cgstamt='".$cgstamt."', sgstpercent='".$sgst."',sgstamt='".$sgstamt."',igstpercent='".$igst."',igstamt='".$igstamt."',amount='".$netamount."',partymasterid='".$partyid."', accountamount='".$netamount."',partyamount='".$netamount."' where transactiondetailsid='".$hdid ."' and mainvoucherno='".$billno."' "; $result = mysqli_query($conn, $query); if($result==true) $message="3"; } else { $message="2"; } } else if($btnopration=="Remove") { $query=" update temptransactiondetailstb set isdeleted=1 where transactiondetailsid='".$hdid."'"; $result = mysqli_query($conn, $query); if($result==true) $message="4"; } echo json_encode($message); ?>
Copyright © 2025 - UnknownSec