Advertisement
Guest User

Untitled

a guest
Mar 1st, 2017
126
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.20 KB | None | 0 0
  1. $sql = mysqli_connect("bla" , "bla" , "bla" , "db");
  2. $password = $_POST['password'];
  3. $emailuser = $_POST['unameemail'];
  4. $password = mysqli_real_escape_string($sql , $password);
  5. $emailuser = mysqli_real_escape_string($sql , $emailuser);
  6. $stmt = $sql->prepare("SELECT password FROM `private` AS p
  7. INNER JOIN `user_private_data`
  8. AS pa ON pa.id=p.id
  9. WHERE username=? OR email=?");
  10. if ($stmt) {
  11. /* Bind parameters: s - string, b - blob, i - int, etc */
  12. $stmt -> bind_param("ss", $emailuser , $emailuser);
  13.  
  14. /* Execute it */
  15. $stmt -> execute();
  16.  
  17. /* Bind results */
  18. $stmt -> bind_result($pwresult);
  19.  
  20. /* Fetch the value */
  21. $stmt -> fetch();
  22.  
  23. /* Close statement */
  24. $stmt -> close();
  25.  
  26. }
  27. $mysqliThing1 = "SELECT * FROM private AS f INNER JOIN user_private_data AS h ON f.id = h.id WHERE username='.$emailuser.' OR email='.$emailuser.'";
  28. $mysqliResult1 = mysqli_query($sql , $mysqliThing1);
  29. $msqlArr1 = mysqli_fetch_array($mysqliResult1, MYSQLI_ASSOC);
  30. if (password_verify($password , $pwresult)) {
  31.  
  32. $_SESSION['username'] = $msqlArr1['username'];
  33. $_SESSION['logged'] = true;
  34. $_SESSION['type'] = "private";
  35. echo $_SESSION['username'];
  36. echo $_SESSION['logged'];
  37. echo $_SESSION['type'];
  38. exit;
  39. header("refresh:0;url=../home.php");
  40. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement