shell bypass 403

GrazzMean Shell

Uname: Linux webm016.cluster127.gra.hosting.ovh.net 5.15.167-ovh-vps-grsec-zfs-classid #1 SMP Tue Sep 17 08:14:20 UTC 2024 x86_64
Software: Apache
PHP version: 7.4.33 [ PHP INFO ] PHP os: Linux
Server Ip: 54.36.31.145
Your Ip: 216.73.216.182
User: homesquasz (91404) | Group: users (100)
Safe Mode: OFF
Disable Function:
_dyuweyrj4,_dyuweyrj4r,dl

name : admin.controller.js
const Admin = require('../models/admin.model.js');

// Create and Save a new admin
exports.create = (req, res) => {
    // Validate request
    if (!req.body.nomPrenom) {
        return res.status(400).send({
            message: "admin content can not be empty"
        });
    }

    // Create a admin
    const admin = new Admin({
        nomPrenom: req.body.nomPrenom || "Untitled Admine",
        email: req.body.email,
        numTelephone: req.body.numTelephone,
        login: req.body.login,
        password: req.body.password,
        status: req.body.status,
    });

    // Save admin in the database
    admin.save()
        .then(data => {
            res.send(data);
        }).catch(err => {
            res.status(500).send({
                message: err.message || "Some error occurred while creating the admin."
            });
        });
};

// Retrieve and return all admin from the database.
exports.findAll = (req, res) => {
    Admin.find()
        .then(admins => {
            res.send(admins);
        }).catch(err => {
            res.status(500).send({
                message: err.message || "Some error occurred while retrieving admins."
            });
        });
};

// Find a single admin with a adminId
exports.findOne = (req, res) => {
    Admin.findById(req.params.adminId)
        .then(admin => {
            if (!admin) {
                return res.status(404).send({
                    message: "admin not found with id " + req.params.adminId
                });
            }
            res.send(admin);
        }).catch(err => {
            if (err.kind === 'ObjectId') {
                return res.status(404).send({
                    message: "admin not found with id " + req.params.adminId
                });
            }
            return res.status(500).send({
                message: "Error retrieving admin with id " + req.params.adminId
            });
        });
};

// Update a admin identified by the adminId in the request
exports.update = (req, res) => {
    // Validate Request
    if (!req.body.nomPrenom) {
        return res.status(400).send({
            message: "admin content can not be empty"
        });
    }

    // Find admin and update it with the request body
    Admin.findByIdAndUpdate(req.params.adminId, {
        nomPrenom: req.body.nomPrenom || "Untitled Admine",
        email: req.body.email,
        numTelephone: req.body.numTelephone,
        login: req.body.login,
        password: req.body.password,
        status: req.body.status,
    }, { new: true })
        .then(admin => {
            if (!admin) {
                return res.status(404).send({
                    message: "admin not found with id " + req.params.adminId
                });
            }
            res.send(admin);
        }).catch(err => {
            if (err.kind === 'ObjectId') {
                return res.status(404).send({
                    message: "admin not found with id " + req.params.adminId
                });
            }
            return res.status(500).send({
                message: "Error updating admin with id " + req.params.adminId
            });
        });
};

// Delete a admin with the specified adminId in the request
exports.delete = (req, res) => {
    Admin.findByIdAndRemove(req.params.adminId)
        .then(admin => {
            if (!admin) {
                return res.status(404).send({
                    message: "admin not found with id " + req.params.adminId
                });
            }
            res.send({ message: "admin deleted successfully!" });
        }).catch(err => {
            if (err.kind === 'ObjectId' || err.name === 'NotFound') {
                return res.status(404).send({
                    message: "admin not found with id " + req.params.adminId
                });
            }
            return res.status(500).send({
                message: "Could not delete admin with id " + req.params.adminId
            });
        });
};
© 2026 GrazzMean