Advertisement
Guest User

Untitled

a guest
Mar 8th, 2017
89
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.33 KB | None | 0 0
  1. <?php
  2.  
  3. //Get values passed from POST method
  4. $username = $_POST['user'];
  5. $password= $_POST['pass'];
  6. $email= $_POST['email'];
  7.  
  8. //to prevent mysql injection
  9. $username = stripcslashes($username);
  10. $password = stripcslashes($password);
  11. $email = stripcslashes($email);
  12. $username = mysql_real_escape_string($username);
  13. $password = mysql_real_escape_string($password);
  14. $email = mysql_real_escape_string($email);
  15.  
  16. //connect to the database
  17. $con = mysqli_connect("localhost", "root", "", "DB_Parasitica");
  18. //mysql_select_db("DB_Parasitica");
  19.  
  20. if($_POST["login"]) {
  21. //Query the database for user
  22. $result = mysql_query("select * from accounts where username = '$username' and password = '$password'") or die("Failed to query database ".mysql_error());
  23. $row = mysql_fetch_array($result);
  24. if ($row['username'] == $username && $row['password'] == $password ){
  25. echo " Login success!!! Welcome ".$row['username'];
  26. } else {
  27. echo "Failed to login...";
  28. }
  29. }
  30.  
  31. if($_POST["register"] {
  32. $sql = "INSERT INTO accounts (id, username, password, salt, email, active, subdays, lastlogin, failedattempts, created) VALUES ("", $username, $password, "", $email, "", "", "", "", "")";
  33.  
  34. if (mysqli_query($sql) {
  35. echo "New account registered successfully!";
  36. } else {
  37. echo "failed to register " .mysqli_error();
  38. }
  39.  
  40.  
  41. }
  42.  
  43. mysqli_close($con);
  44. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement