Advertisement
Guest User

Untitled

a guest
Sep 30th, 2016
160
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.10 KB | None | 0 0
  1. <?php
  2.  
  3. $resp = array();
  4. $username = $_GET["username"];
  5. $password = $_GET["password"];
  6.  
  7. $resp['submitted_data'] = $_POST;
  8.  
  9. $login_status = 'invalid';
  10.  
  11. $con = mysql_connect("localhost","u246282950_deer","Daman12345!");
  12. mysql_select_db("u246282950_main",$con);
  13.  
  14. if ($username && $password){
  15. $name = mysql_real_escape_string($username);
  16. $pass = mysql_real_escape_string($password);
  17. $user = mysql_fetch_array(mysql_query("SELECT * FROM users WHERE username=".$name)) or die($myQuery."<br/><br/>".mysql_error());;
  18. if ($user[password] != $pass){
  19. die("Incorrect password");
  20. }
  21. $login_status = 'success';
  22. }
  23.  
  24.  
  25. $resp['login_status'] = $login_status;
  26.  
  27. if($login_status == 'success')
  28. {
  29. $salt = hash("sha512", rand().rand().rand());
  30. setcookie("c_user", hash("sha512", $username, time() + 24 * 60 * 60, "/"));
  31. setcookie("c_salt", $salt, time() + 24 * 60 * 60, "/");
  32. $userID = $user["ID"];
  33. mysql_query("UPDATE users SET Salt = '$salt; WHERE ID = '$userID'");
  34.  
  35. $resp['redirect_url'] = '';
  36. }
  37.  
  38.  
  39. echo json_encode($resp);
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement