Guest User

Untitled

a guest
Oct 1st, 2016
36
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.09 KB | None | 0 0
  1. if ($_SERVER['REQUEST_METHOD'] == 'POST'){
  2.  
  3. $userLogin = mysqli_real_escape_string($connLogin, $_POST['userLogin']);
  4. $userLogin2 = mysqli_real_escape_string($connLogin, $_POST['userLogin']);
  5. $pass = mysqli_real_escape_string($connLogin, $_POST['passLogin']);
  6.  
  7. $passCriptata2ndLevelQry = mysqli_query($connLogin,"SELECT PASSWORD('" . mysql_real_escape_string($pass) . "') as password;");
  8. $passCriptata2ndLevelArr = mysqli_fetch_assoc($passCriptata2ndLevelQry);
  9. $passMysqlCript = urlencode($passCriptata2ndLevelArr['password']);
  10.  
  11. $getQryData = mysqli_query($connLogin,"SELECT * FROM ADMIN WHERE username = '".$userLogin."'");
  12. $rowgetData = mysqli_fetch_assoc($getQryData);
  13. $passStored = $rowgetData['password'];
  14.  
  15. $controlPass = false;
  16. if (password_verify($passMysqlCript, $passStored)) {
  17.     $controlPass = true;
  18. }
  19.  
  20. // Check del login
  21. if($controlPass){
  22.   $_SESSION['loggedin'] = true;
  23.   $_SESSION['username'] = $userLogin2;
  24.   echo('<script>location.reload();</script>');
  25. } else {
  26.   echo('<script type="text/javascript">window.alert("I dati che hai inserito sono errati. Riprova!")</script>');
  27. }
  28. }
Add Comment
Please, Sign In to add comment