Advertisement
Guest User

Untitled

a guest
Jul 29th, 2017
79
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.14 KB | None | 0 0
  1. <?php
  2. //Start cookies
  3. ob_start();
  4.  
  5. //Connect to the database - Sorry for sloppy code, I'm so tired <.<
  6. @mysql_connect("localhost", "root", "r456hgz") or die("Mysql connection failed. Reason: " . mysql_error());
  7. @mysql_select_db("archicruise") or die("Database couldn't be selected");
  8.  
  9. //MySQL connected fine, check if logged in
  10. if(isset($_COOKIE['user']) && isset($_COOKIE['pass']))
  11. {
  12.     $user = cleanmysql($_COOKIE['user']);
  13.     $pass = cleanmysql($_COOKIE['pass']);
  14.     $select = @mysql_query("SELECT * FROM `users` WHERE `name` = '" . $user . "' AND `pass` = '" . $pass . "' LIMIT 1");
  15.     if(mysql_num_rows($select) > 0)
  16.     {
  17.         //We are logged in
  18.         $islogged = true;
  19.        
  20.         //Update SSO ticket
  21.         $sso = md5(time() . $self['name'] . $self['id']);
  22.         mysql_query("UPDATE `users` SET `sso_ticket` = '" . $sso . "' WHERE `id` = '" . $self['id'] . "'");
  23.        
  24.         //User field
  25.         $select = @mysql_query("SELECT * FROM `users` WHERE `name` = '" . $user . "' AND `pass` = '" . $pass . "' LIMIT 1");
  26.         $self = mysql_fetch_assoc($select);
  27.     }
  28. }
  29.  
  30. //Custom clean function
  31. function cleanmysql($str)
  32. {
  33.     return mysql_real_escape_string(htmlspecialchars($str));
  34. }
  35. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement