HEX
Server: Apache/2.4.46 (Ubuntu)
System: Linux localhost 5.11.0-49-generic #55-Ubuntu SMP Wed Jan 12 17:36:34 UTC 2022 x86_64
User: root (0)
PHP: 7.4.16
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
Upload Files
File: /var/www/html/sarvodayahospital/public/mapp/paymentgatway/pay_mobile.php
<?php
ini_set('display_errors', 1);
ini_set('display_startup_errors', 1);
error_reporting(E_ALL);
if(!$_GET['token']){
    exit('404');
}
  $token = base64_decode($_GET['token']);
  $file = file_get_contents('payment_info/'.$token.'.txt');
  if(!$file){
      exit('404');
  }
  $file = json_decode($file,1);
  $date_time = date('Y-m-d H:i:s', strtotime("-20 min"));
  $file_time = date('Y-m-d H:i:s', strtotime($file['time']));
  if( $date_time > $file ){
        exit('link expired');
  }
  //print_r($file);


  include('Crypto.php');


  $time = round(microtime(true) * 1000);
  
	$payment_data = array(
				"tid" => $time
				,"merchant_id" => '224898'
				,"order_id" => $file["orderid"]
				,"amount" => number_format((float)$file["amount"], 2, '.', '')
				,"currency" => "INR"
				,"redirect_url" => $file["redirect_url"]
				,"cancel_url" => $file["cancel_url"]
				,"language" => "EN"
				,"billing_name" => $file["name"]
				,"billing_address" => ''
				,"service_service_type" => $file["interest"]
				,"billing_country" => 'India'
				,"billing_tel" =>$file["mobile"]
	);



	error_reporting(0);

	$merchant_data='';
	$working_key='608934FAD8273DAB1C11371AEE32C597';//Shared by CCAVENUES
	$access_code='AVNJ86GG43AS62JNSA';//Shared by CCAVENUES

	$time = round(microtime(true) * 1000);

	foreach ($payment_data as $key => $value){
		$merchant_data.=$key.'='.urlencode($value).'&';
	}

	$encrypted_data=encrypt($merchant_data,$working_key); // Method for encrypting the data.

?>
<form method="post" name="redirect" action="https://secure.ccavenue.com/transaction/transaction.do?command=initiateTransaction">
<?php
echo "<input type=hidden name=encRequest value=$encrypted_data>";
echo "<input type=hidden name=access_code value=$access_code>";
?>
</form>
</center>
<script language='javascript'>document.redirect.submit();</script>
</body>
</html>