Guest User

Untitled

a guest
May 19th, 2018
169
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.58 KB | None | 0 0
  1. <?php
  2. $salt = substr(md5(rand()), 0, 4);
  3. $hashedpassword = md5($password.$salt);
  4. $sql = "INSERT INTO Users (Username, Password, Salt) " .
  5. "VALUES ('" . addslashes($username) . "', " .
  6. "'$hashedpassword', '$salt')";
  7. $db->executeQuery($sql);
  8.  
  9. // ...
  10.  
  11. $sql = "SELECT Salt FROM Users WHERE Username = '" .
  12. addslashes($username) . "'";
  13. $rs = $db->executeQuery($sql);
  14. $salt = $rs->getValueByNr(0,0);
  15. $hashedpassword = md5($password.$salt);
  16. $sql = "SELECT * FROM Users WHERE " .
  17. "Username = '" . addslashes($username) . "' AND " .
  18. "Password = '$hashedpassword'";
  19. ?>
Add Comment
Please, Sign In to add comment