Advertisement
Guest User

checkUser

a guest
Jun 28th, 2016
75
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.33 KB | None | 0 0
  1. if(isset($_POST['submit'])){
  2. $Username = mysqli_real_escape_string($MyS, $_POST['user']);
  3. $Pass = mysqli_real_escape_string($MySQLIConnect, $_POST['pass']);
  4. $Password = crypt ($Pass, "nd");
  5. $Check = mysqli_query($MySQLIConnect, "SELECT * FROM LIMIT 1");
  6.  
  7. if(mysqli_num_rows($Check) == 1){
  8. while ($row = $Check->fetch_assoc()) {
  9. $user = $row['user'];
  10. $failedLog = $row['failedLog'];
  11. if ($failedLog >= 5) {
  12. die ('Sie haben Ihr passwort zu oft falsch eingegeben, bitte wenden Sie sich an Ihren Administrator.');
  13. }
  14. $_SESSION['userId'] = $row['userId'];
  15. $sql = "UPDATE `user` SET `failedLog` = '0' WHERE `user` = '$user'";
  16. $result = $MySQLIConnect->query($sql);
  17. if (!$result) {
  18. die ('Etwas stimmte mit dem Query nicht: '.$MySQLIConnect->error);
  19. }
  20. header('Location: loggedin.php');
  21. }
  22. }else {
  23. $Check = mysqli_query($MySQLIConnect, "SELECT * FROM LIMIT 1");
  24. if(mysqli_num_rows($Check) == 1){
  25. $sql = "UPDATE `user` SET `failedLog` = failedLog+1 WHERE `username` = '$Username'";
  26. $result = $MySQLIConnect->query($sql);
  27. if (!$result) {
  28. die ('Etwas stimmte mit dem Query nicht: '.$MySQLIConnect->error);
  29. }
  30. }
  31.  
  32. $_SESSION ['message'] = ("Ihr Benutzername oder Passwort ist falsch!");
  33. header('Location: index.php');
  34. }
  35. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement