Advertisement
Guest User

Untitled

a guest
Feb 10th, 2016
109
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.55 KB | None | 0 0
  1. <?php
  2. // »ÌˈËËÛÂÏ ÒÂÒÒ˲
  3. session_start();
  4. ?>
  5. <form method=post>
  6. »Ïˇ : <input type=text name=name
  7. value='<?= $_SESSION['name']; ?>'><br>
  8. œ‡Óθ : <input type=password name=password
  9. value='<?= $_SESSION['password']; ?>'><br>
  10. <input type=submit value=ŒÚÔ‡‚ËÚ¸>
  11. </form>
  12. <?
  13. // Œ·‡·ÓÚ˜ËÍ ÙÓÏ˚
  14. if(!empty($_POST['name']) && !empty($_POST['password']))
  15. {
  16. // ”Òڇ̇‚ÎË‚‡ÂÏ ÒÓ‰ËÌÂÌËÂ Ò ·‡ÁÓÈ ‰‡ÌÌ˚ı
  17. require_once("config.php");
  18. // «‡˘Ë˘‡ˇÒ¸ ÓÚ SQL-ËÌ˙Â͈ËË, ÔÓÔÛÒ͇ÂÏ
  19. // ÔÓÎÛ˜ÂÌÌ˚ ԇÓθ Ë ÎÓ„ËÌ ˜ÂÂÁ ÙÛÌÍˆË˛
  20. // mysql_escape_string
  21. if (!get_magic_quotes_gpc())
  22. {
  23. $_POST['name'] = mysql_escape_string($_POST['name']);
  24. $_POST['password'] = mysql_escape_string($_POST['password']);
  25. }
  26. // ŒÒÛ˘ÂÒڂΡÂÏ Á‡ÔÓÒ, ÍÓÚÓ˚È ‚ÓÁ‚‡˘‡ÂÚ
  27. // ÍÓ΢ÂÒÚ‚Ó Á‡ÔËÒÂÈ, Û‰Ó‚ÎÂÚ‚Óˇ˛˘Ëı Ô‡Óβ
  28. // Ë ÎÓ„ËÌÛ
  29. $query = "SELECT COUNT(*) FROM userslist
  30. WHERE name = '$_POST[name]' AND pass = '$_POST[password]'";
  31. $usr = mysql_query($query);
  32. if(!$usr) exit("Œ¯Ë·Í‡ ‚ ·ÎÓÍ ‡‚ÚÓËÁ‡ˆËË");
  33. // œÓÎÛ˜‡ÂÏ ÍÓ΢ÂÒÚ‚Ó Á‡ÔËÒÂÈ
  34. $total = mysql_result($usr,0);
  35. }
  36. // ≈ÒÎË ÍÓ΢ÂÒÚ‚Ó Á‡ÔËÒÂÈ ·Óθ¯Â 0,
  37. // Á‡ÌÓÒËÏ ‰‡ÌÌ˚Â Ó ÔÓθÁÓ‚‡ÚÂΠ‚ ÒÂÒÒ˲
  38. if($total > 0)
  39. {
  40. $_SESSION['name'] = $_POST['name'];
  41. $_SESSION['password'] = $_POST['password'];
  42. }
  43. // ≈ÒÎË ÔÓÒÂÚËÚÂθ "‚Ó¯ÂÎ" - ÔË‚ÂÚÒÚ‚ÛÂÏ Â„Ó
  44. if(isset($_SESSION['name']))
  45. {
  46. // ”Òڇ̇‚ÎË‚‡ÂÏ ÒÓ‰ËÌÂÌËÂ Ò ·‡ÁÓÈ ‰‡ÌÌ˚ı
  47. require_once("config.php");
  48. // ¬˚‚Ó‰ËÏ ÔË‚ÂÚÒÚ‚ËÂ
  49. echo "«‰‡‚ÒÚ‚ÛÈÚÂ, ".$_SESSION['name']."!<br>";
  50. echo "ƒÓÒÚÛÔ Í ‚‡¯ËÏ ÒÂÍÂÚÌ˚Ï ‰‡ÌÌ˚Ï<br>";
  51. // ¬˚‚Ó‰ËÏ ‰‡ÌÌ˚ ÔÓθÁÓ‚‡ÚÂΡ
  52. $query = "SELECT * FROM userslist WHERE name = '$_SESSION[name]'";
  53. $usr = mysql_query($query);
  54. if(!$usr) exit(mysql_error());
  55. $user = mysql_fetch_array($usr);
  56. echo "¬‡¯ e-mail: ".$user['email']."<br>";
  57. echo "¬‡¯ URL: ".$user['url']."<br>";
  58. }
  59. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement