Guest User

Untitled

a guest
Jan 22nd, 2019
140
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.50 KB | None | 0 0
  1. <div id="maincontent">
  2.  
  3. <div id="loginbox">
  4.  
  5. <?php
  6.  
  7. include '../nosee/global.php';
  8.  
  9. $session_username = $_SESSION['username'];
  10.  
  11. if ($_POST['login'])
  12. {
  13. //get form data
  14. $username = mysql_real_escape_string(strip_tags($_POST['username']));
  15. $password = mysql_real_escape_string(strip_tags($_POST['password']));
  16. echo $username;
  17. echo $password;
  18.  
  19. if (!$username||!$password)
  20. echo "Enter a username and password";
  21. else
  22. {
  23. //log in
  24. $login = mysql_query("SELECT * FROM admin WHERE username='$username'");
  25. if (mysql_num_rows($login)==0)
  26. echo "No such user";
  27. else
  28. {
  29. while ($login_row = mysql_fetch_assoc($login))
  30. {
  31.  
  32. //get database password
  33. $password_db = $login_row['password'];
  34.  
  35. //encrypt form password
  36. $password = md5($password);
  37.  
  38. //check password
  39. if (md5($password)!=$password_db)
  40. echo "Incorrect password";
  41. else
  42. {
  43. $_SESSION['username']=$username; //assign session
  44. header("Location: login.php"); //refresh
  45. }
  46. }
  47.  
  48.  
  49. }
  50. }
  51. }
  52. else
  53. {
  54.  
  55. if (isset($session_username))
  56. {
  57. echo "You are logged in, $session_username. <a href='logout.php'>Log out</a>";
  58. }
  59. else
  60. {
  61. echo "
  62. <form action='login.php' method='POST'>
  63. Username:<br />
  64. <input type='text' name='username'><p />
  65. Password:<br />
  66. <input type='password' name='password'><p />
  67. <input type='submit' name='login' value='Log in'>
  68. </form>
  69. ";
  70. }
  71.  
  72. }
  73.  
  74. ?>
  75.  
  76. </div>
  77.  
  78. </div>
Add Comment
Please, Sign In to add comment