Guest User

Untitled

a guest
Oct 23rd, 2017
88
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 0.93 KB | None | 0 0
  1. <?php
  2. require_once('includes/config.inc.php');
  3. require_once('includes/footer.inc.php');
  4. if(isset($_POST['submit'])) {
  5.     $username = mysql_real_escape_string($_POST['username']);
  6.     $password = mysql_real_escape_string($_POST['password']);
  7. $query = "SELECT * FROM `users` WHERE `password` = 'md5($password)' AND `username` = '$username'";  
  8.  
  9. $result = mysql_query($query) or die(mysql_error());
  10.  
  11. while($row = mysql_fetch_array($result)){
  12.     $resusername = $row['username']; // username from DB
  13.     $respassword = $row['password']; // password from DB
  14.     $resemail = $row['email']; // email from db
  15.  
  16. }
  17.  
  18. // Are they a valid user?
  19. if ($respassword == $password) {
  20.     $_SESSION['loggedin'] = "1";
  21.     $_SESSION['email'] = $resemail;
  22.     $_SESSION['username'] = $resusername;
  23.     echo "Congrats, Your logged in"; // YAY
  24. }else{
  25.     // No, Lets mark them as invalid.
  26.     $_SESSION['loggedin'] = "0";
  27.     echo "Sorry, Invalid details"; // Nay
  28. }
  29.  
  30.   }
  31. ?>
Add Comment
Please, Sign In to add comment