Advertisement
anhdh

Untitled

Jun 27th, 2016
139
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 2.06 KB | None | 0 0
  1. // post data
  2. <?php
  3. If  (isset($_POST['user'], $_POST['pass'],$_POST['soacc'] )) {
  4.     $Host = 'mysql.hostinger.vn';
  5.     $User = 'u608213047_user';
  6.     $Pass = '123456';
  7.     $MyDB = 'u608213047_ptc';
  8.     $_POST['user'] = strip_tags($_POST['user']);
  9.     $_POST['user'] = addslashes($_POST['user']);
  10.     $_POST['pass'] = strip_tags($_POST['pass']);
  11.     $_POST['pass'] = addslashes($_POST['pass']);
  12.     $_POST['soacc'] = strip_tags($_POST['soacc']);
  13.     $_POST['soacc'] = addslashes($_POST['soacc']);
  14.     $user = $_POST['user'];
  15.     $pass = $_POST['pass'];
  16.     $soacc = $_POST['soacc'];
  17.     $con = mysqli_connect($Host,$User,$Pass,$MyDB);
  18.     If (mysqli_connect_errno())
  19.     {
  20.       Echo 'CANT_CONNECT';
  21.     }else {
  22.             $Query = Mysqli_Query($con,"SELECT * FROM dblogin WHERE acc='" . $user . "' and pass='" . $pass . "'");
  23.             If (!$Query || mysqli_num_rows($Query) == 0) {
  24.                 Echo 'EXIST';
  25.             }
  26.             Else {                               
  27.                     mysqli_query($con,"UPDATE dblogin SET So_Acc='".$SoAcc ."' WHERE id='".$id."'");
  28.                     Echo 'DONE';
  29.             }
  30.             mysqli_close($con);
  31.         }
  32. } Else {
  33.     Echo 'ERROR';
  34. }
  35. ?>
  36.  
  37.  
  38.  
  39.  
  40. //login
  41. <?php
  42. If (isset($_POST['user'], $_POST['pass'])) {
  43.     $Host = 'mysql.hostinger.vn';
  44.     $User = 'u608213047_user';
  45.     $Pass = '123456';
  46.     $MyDB = 'u608213047_ptc';
  47.     $_POST['user'] = strip_tags($_POST['user']);
  48.     $_POST['user'] = addslashes($_POST['user']);
  49.     $_POST['pass'] = strip_tags($_POST['pass']);
  50.     $_POST['pass'] = addslashes($_POST['pass']);
  51.     $user = $_POST['user'];
  52.     $pass = $_POST['pass'];
  53.     $con=mysqli_connect($Host,$User,$Pass,$MyDB);
  54.     If (mysqli_connect_errno())
  55.     {
  56.         Echo 'CANT_CONNECT';
  57.     } else {
  58.         $Query = Mysqli_Query($con,"SELECT * FROM dblogin WHERE Account='" . $user . "' and Password='" . $pass . "'");
  59.         If (!$Query || mysqli_num_rows($Query) == 0) {
  60.             Echo 'WRONG';
  61.         } Else {
  62.             $row = mysqli_fetch_array($Query, MYSQL_ASSOC);
  63.             Echo 'OK-' . $row['So_Acc'] . '-' . $row['Status'] . '-' . $row['Thong_Bao_Tu_Admin'] ;
  64.         }
  65.         mysqli_close($con);
  66.     }
  67. } Else {
  68.     Echo 'ERROR';
  69. }
  70. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement