Advertisement
Guest User

Untitled

a guest
May 11th, 2017
67
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.34 KB | None | 0 0
  1. <?
  2. include_once("header.php");
  3. include_once("../db_connect.php");
  4. include_once("nav.php");
  5. if($_POST['post_pass']){
  6.     $post_user = mysql_real_escape_string($_POST['post_user']);
  7.     $post_pass = mysql_real_escape_string($_POST['post_pass']);
  8.     $e_pass = md5(sha1($salty . $post_pass . $salty));
  9.     $server = mysql_connect($dbhost, $dbuser, $dbpass) or die("Connection Failure to Database");
  10.     $conn = mysql_select_db($dbname, $server) or die($dbname . " Database not found . " . $dbuser);
  11.     $login_query = "SELECT * FROM users WHERE user = '$post_user' AND pass = '$e_pass' AND allow = true";
  12.     $login_result = mysql_query($login_query) or die('Invalid Query: ' . $login_query);
  13.     $login_num_rows = mysql_num_rows($login_result);
  14.     if($login_num_rows == 1){
  15.         while($login_row = mysql_fetch_array($login_result)){
  16.             $login_name = $login_row['name'];
  17.             $login_user = $login_row['user'];
  18.             $login_pass = $login_row['pass'];
  19.             $login_email = $login_row['email'];
  20.             $login_access = $login_row['access'];
  21.             $login_allow = $login_row['allow'];
  22.             echo $login_access . "<br>";
  23.             $_SESSION['access'] = $login_access;
  24.             $_SESSION['user'] = $login_user;
  25.             $_SESSION['pass'] = $login_pass;
  26.         }
  27.         echo "<center>Successfully Logged In<br>";
  28.         echo "<a href='index.php'>Continue</a></center>";
  29.     }else{
  30.         echo "Login failed";
  31.     }
  32. }
  33. include_once('footer.php');
  34. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement