Advertisement
Guest User

Untitled

a guest
Sep 24th, 2017
46
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 0.50 KB | None | 0 0
  1. $sanitized_UName = mysql_real_escape_string(strtoupper($_POST['user'])); //Sanitized username to prevent SQL injections
  2.  
  3. //If login is successful
  4. $query = mysql_query("SELECT UID, UName, passwd, status FROM users WHERE UName='".$sanitized_UName."';");
  5. $record = mysql_fetch_assoc($query);
  6. echo $record['passwd']."<br />".crypt($_POST['pass'], "f$7a%fb%8f*c1f$093@&6596_ce18%8d4^80ff$1b");
  7. if ($record['passwd'] == crypt($_POST['pass'], "f$7a%fb%8f*c1f$093@&6596_ce18%8d4^80ff$1b")){
  8.         echo "SUCCESS";
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement