HEX
Server: Apache
System: Linux dev.epsylon.net 3.10.0-1160.144.1.el7.tuxcare.els2.x86_64 #1 SMP Sun Feb 15 11:22:42 UTC 2026 x86_64
User: nexper (1054)
PHP: 8.2.30
Disabled: exec,passthru,shell_exec,system
Upload Files
File: /home/nexper/public_html/nexper_drupal/php/modules/verprod.php
<!--best start -->
<div id="best">
<?php
$sb = @$_GET['sec'];
$id = @$_GET['idp'];
//--DB checkout
$query = "SELECT p.id as pid,".
		  " p.valor as precio,".
		  " p.fechaing as fechai,".
		  " p.createdby as creador,".
		  " p.fechamod as fecham,".
		  " p.descripcion as des,".
		  " p.amoblada as amob,".
		  " t.tipo as modalidad,".
		  " p.sector as sector,".
		  " c.ciudad as ciudad, ". 
		  " cat.nombre as catn ". 
   "FROM producto AS p ".
	   //"LEFT JOIN sector as s ON (s.id = p.sectorID)".
	   "LEFT JOIN ciudad as c ON (c.id = p.ciudadID)".
	   "LEFT JOIN tipocat as t ON (t.id = p.modalidad)".
	   "LEFT JOIN categoria as cat ON (cat.id = p.categoriaID)".
   "WHERE p.id = '".$id."'";

//$query = "SELECT * FROM producto WHERE id = '".$id."'";

$chkdb = mysql_query($query);
if (!(mysql_num_rows($chkdb) > 0)) {
	echo "<h2>Error!</h2>";
	echo "<p align='center' class='bestTxt'><b>Esta Propiedad no existe!...</b></p>";
} else {	
	//--
	$cant = mysql_fetch_assoc($chkdb);
	echo '<table width="100%" align="center" border="0" cellspacing="0" cellpadding="0" id="contenido">';
	echo '<tr>';
	echo '<td align="center" class="title" height="20"><h2>'.$cant{'modalidad'}.': '.$cant{'catn'}.': '.$cant{'sector'}.': '.$cant{'ciudad'}.'</h2></td></tr>';
	$image_c = '<div id="gallery">'.getProdImgs($cant{'pid'}, $prod_path, 150, 150).'</div>';
	if ($cant{'precio'} == 0 || empty($cant{'precio'})) {
		$precio = "";
	} else {
		$precio = "<br><b>Precio: $ ".number_format($cant{'precio'}, 0, ',', '.')."</b>";
	}

	$descripcion = str_replace("%20", " ", $cant{'des'});
	echo '<td align="left" valign="top">'.
	$image_c.
	'<br><br>'.
	'<p class="bestTxt">Detalle de la Propiedad:</p>'.
	'<br><br><p class="bestTxt2">'.$descripcion.'</p><br>'.
	'<p class="bestTxt3"><b>Sector:</b> '.$cant{'sector'}.'<br><b>Ciudad:</b> '.$cant{'ciudad'}.'<br><b>Amoblada:</b> '.getYN($cant{'amoblada'}).
	'</p>'.
	'<p class="bestTxt3">'.$precio.'</p>'; //
	echo '</td></table>';

	echo '<br><br><p align="center"><input type="button" name="cancel" id="cancel" value="Volver" class="inputButton" onClick="javascript:history.go(-1)"></p><br>';    
}
?>
</div>
<!--best end -->