Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- $fuser = $_POST['fusername'];
- $fpass = $_POST['fpassword'];
- $query = "SELECT * FROM person WHERE username='$fuser' AND password='$fpass'";
- $result = mysql_query($query);
- $num = mysql_num_rows($result);
- if ($num==1) {
- $row = mysql_fetch_array($result);
- extract($row);
- $_SESSION['auth'] = "yes";
- $_SESSION['uname'] = $fuser;
- $_SESSION['lev'] = $accesslevel;
- $loginemail = $_POST['lemail'];
- $loginpass = $_POST[('lpassword')];
- $loginpass = sha1($loginpass);
- $query = $hsdbc->prepare('SELECT * FROM user WHERE email =
- :loginemail and password = :loginpass');
- $query->bindParam(':loginemail', $loginemail, PDO::PARAM_STR, 75);
- $query->bindParam(':loginpass', $loginpass, PDO::PARAM_STR, 255);
- $query->execute();
- if ($query->rowCount() == 1 ){
- if ($query->rowCount() == 1 ){
- $data = $query->fetch(PDO::FETCH_ASSOC);
- $_SESSION['auth'] = "yes";
- $_SESSION['uname'] = $data['fuser'];
- $_SESSION['lev'] = $data['access_level'];
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement