Advertisement
Guest User

Untitled

a guest
Apr 21st, 2014
50
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.92 KB | None | 0 0
  1. $fuser = $_POST['fusername'];
  2. $fpass = $_POST['fpassword'];
  3. $query = "SELECT * FROM person WHERE username='$fuser' AND password='$fpass'";
  4. $result = mysql_query($query);
  5. $num = mysql_num_rows($result);
  6. if ($num==1) {
  7. $row = mysql_fetch_array($result);
  8. extract($row);
  9. $_SESSION['auth'] = "yes";
  10. $_SESSION['uname'] = $fuser;
  11. $_SESSION['lev'] = $accesslevel;
  12.  
  13. $loginemail = $_POST['lemail'];
  14. $loginpass = $_POST[('lpassword')];
  15. $loginpass = sha1($loginpass);
  16. $query = $hsdbc->prepare('SELECT * FROM user WHERE email =
  17. :loginemail and password = :loginpass');
  18. $query->bindParam(':loginemail', $loginemail, PDO::PARAM_STR, 75);
  19. $query->bindParam(':loginpass', $loginpass, PDO::PARAM_STR, 255);
  20. $query->execute();
  21. if ($query->rowCount() == 1 ){
  22.  
  23. if ($query->rowCount() == 1 ){
  24. $data = $query->fetch(PDO::FETCH_ASSOC);
  25. $_SESSION['auth'] = "yes";
  26. $_SESSION['uname'] = $data['fuser'];
  27. $_SESSION['lev'] = $data['access_level'];
  28. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement