Advertisement
Guest User

Untitled

a guest
Nov 18th, 2019
146
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.31 KB | None | 0 0
  1. <?php
  2. session_start();
  3. if (isset($_SESSION['username'])) {
  4. header("Location: index.php");
  5. exit;
  6. }
  7. if (isset($_GET["user"])) {
  8. if ($_GET["user"] == "login") {
  9. include('mysql.php');
  10. $user = mysqli_real_escape_string($mysqli, $_POST['username']);
  11. $pw = mysqli_real_escape_string($mysqli, $_POST['password']);
  12. $data = 0;
  13. $sql = "SELECT username FROM users WHERE username = '$user'";
  14. $result = mysqli_query($mysqli, $sql) or die(mysqli_error($mysqli));
  15.  
  16. while ($row = mysqli_fetch_object($result)) {
  17. $data++;
  18. }
  19. if ($data != 0) {
  20. include('mysql.php');
  21. $data = 0;
  22. $sql = "SELECT password FROM users WHERE username = '$user'";
  23. $result = mysqli_query($mysqli, $sql) or die(mysqli_error($mysqli));
  24. while ($row = mysqli_fetch_array($result)) {
  25. if (password_verify($pw, $row["password"])) {
  26. session_start();
  27. $_SESSION['username'] = $user;
  28. header('Location: index.php');
  29. exit;
  30. } else {
  31. echo 'Falsche Benutzerdaten!';
  32. }
  33. }
  34. } else {
  35. echo 'Benutzer existiert nicht!';
  36. }
  37. }
  38. } ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement