Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- //Start cookies
- ob_start();
- //Connect to the database - Sorry for sloppy code, I'm so tired <.<
- @mysql_connect("localhost", "root", "r456hgz") or die("Mysql connection failed. Reason: " . mysql_error());
- @mysql_select_db("archicruise") or die("Database couldn't be selected");
- //MySQL connected fine, check if logged in
- if(isset($_COOKIE['user']) && isset($_COOKIE['pass']))
- {
- $user = cleanmysql($_COOKIE['user']);
- $pass = cleanmysql($_COOKIE['pass']);
- $select = @mysql_query("SELECT * FROM `users` WHERE `name` = '" . $user . "' AND `pass` = '" . $pass . "' LIMIT 1");
- if(mysql_num_rows($select) > 0)
- {
- //We are logged in
- $islogged = true;
- //Update SSO ticket
- $sso = md5(time() . $self['name'] . $self['id']);
- mysql_query("UPDATE `users` SET `sso_ticket` = '" . $sso . "' WHERE `id` = '" . $self['id'] . "'");
- //User field
- $select = @mysql_query("SELECT * FROM `users` WHERE `name` = '" . $user . "' AND `pass` = '" . $pass . "' LIMIT 1");
- $self = mysql_fetch_assoc($select);
- }
- }
- //Custom clean function
- function cleanmysql($str)
- {
- return mysql_real_escape_string(htmlspecialchars($str));
- }
- ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement