T.ME/BIBIL_0DAY
CasperSecurity


Server : Apache/2
System : Linux server-15-235-50-60 5.15.0-164-generic #174-Ubuntu SMP Fri Nov 14 20:25:16 UTC 2025 x86_64
User : gositeme ( 1004)
PHP Version : 8.2.29
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Directory :  /home/gositeme/domains/gositeme.com/hdinvoice3/includes/templates/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /home/gositeme/domains/gositeme.com/hdinvoice3/includes/templates/save-current-customer.php
<?php
/* edit existing customer save */

// get and santize form data
$hdv_customer_id = intval($_POST['hdv_customer_id']);
$hdv_customer_name = sanitize_text_field($_POST['hdv_customer_name']);
$hdv_customer_email = sanitize_email($_POST['hdv_customer_email']);
$hdv_customer_website = sanitize_text_field($_POST['hdv_customer_website']);
$hdv_customer_phone = sanitize_text_field($_POST['hdv_customer_phone']);
$hdv_customer_address = sanitize_text_field($_POST['hdv_customer_address']);
$hdv_customer_address2 = sanitize_text_field($_POST['hdv_customer_address2']);
$hdv_customer_city = sanitize_text_field($_POST['hdv_customer_city']);
$hdv_customer_state = sanitize_text_field($_POST['hdv_customer_state']);
$hdv_customer_country = sanitize_text_field($_POST['hdv_customer_country']);
$hdv_customer_zip = sanitize_text_field($_POST['hdv_customer_zip']);
$tax = $_POST['hdv_customer_tax'];

// make sure that intval does not convert empty field to a zero
if ($tax != "" && $tax != null) {
    $hdv_customer_tax = intval($_POST['hdv_customer_tax']);
} else {
    $hdv_customer_tax = "";
}
$hdv_customer_info =  wp_kses_post($_POST['hdv_customer_info']);
$logo = $_POST['hdv_customer_logo'];
if ($logo != "" && $logo != null) {
    $hdv_customer_logo = intval($_POST['hdv_customer_logo']);
} else {
    $hdv_customer_logo = "";
}

// make sure the customer name was entered
if ($hdv_customer_name != "" && $hdv_customer_name != null) {

    // now add any additional information
    update_term_meta($hdv_customer_id, 'hdv_customer_name', $hdv_customer_name);
    update_term_meta($hdv_customer_id, 'hdv_customer_email', $hdv_customer_email);
    update_term_meta($hdv_customer_id, 'hdv_customer_website', $hdv_customer_website);
    update_term_meta($hdv_customer_id, 'hdv_customer_phone', $hdv_customer_phone);
    update_term_meta($hdv_customer_id, 'hdv_customer_address', $hdv_customer_address);
    update_term_meta($hdv_customer_id, 'hdv_customer_address2', $hdv_customer_address2);
    update_term_meta($hdv_customer_id, 'hdv_customer_city', $hdv_customer_city);
    update_term_meta($hdv_customer_id, 'hdv_customer_state', $hdv_customer_state);
    update_term_meta($hdv_customer_id, 'hdv_customer_country', $hdv_customer_country);
    update_term_meta($hdv_customer_id, 'hdv_customer_zip', $hdv_customer_zip);
    update_term_meta($hdv_customer_id, 'hdv_customer_tax', $hdv_customer_tax);
    update_term_meta($hdv_customer_id, 'hdv_customer_info', $hdv_customer_info);
    if ($hdv_customer_logo != "") {
        update_term_meta($hdv_customer_id, 'hdv_customer_logo', $hdv_customer_logo);
    }

    echo '<div style = "display:none;"><span class = "hd_saved_customer_name">'.$hdv_customer_name.'</span><span class = "hd_saved_customer_id">'.$newCustomer['term_id'].'</span></div>';
    hdv_view_customer();
} else {
    echo 'A customer name was never entered';
}

CasperSecurity Mini