Guest User

Untitled

a guest
Oct 25th, 2018
120
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.76 KB | None | 0 0
  1. <?php
  2. $username = $_GET["username"];
  3. $servername = "localhost";
  4. $sname = "root";
  5. $sword = "P@ssw0rd";
  6. $dbname = "contoso";
  7. $conn = new mysqli($servername, $sname, $sword, $dbname);
  8. if ($conn->connect_error) {
  9. die("Connection failed: " . $conn->connect_error);
  10. }
  11. $username = mysqli_real_escape_string($conn,$username);
  12. $password = mysqli_real_escape_string($conn,$password);
  13. $sql = "SELECT * FROM users WHERE username = '".$username."';";
  14. echo "Sql: $sql<br><br><br>";
  15. $result = $conn->query($sql);
  16. if ($result->num_rows >= 1) {
  17. while($row = $result->fetch_assoc()) {
  18. echo "username: " . $row["username"]. " - password: " . $row["password"]. "<br>";
  19. }
  20. } else {
  21. echo 'No result!';
  22. }
  23. $conn->close();
  24. echo "<h1><br><br>Please don't misuse the site! You will be caught!<br></h1>";
  25. ?>
Add Comment
Please, Sign In to add comment