Advertisement
Guest User

Untitled

a guest
May 14th, 2016
88
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.97 KB | None | 0 0
  1. <?php
  2.  
  3. /*
  4. ____ _ _ _ _
  5. | _ \ | | | | | | | |
  6. | |_) |_ _| |__ | |__ ___ | | __ _| |__
  7. | _ <| | | | '_ \| '_ \ / _ \| |/ _` | '_ \
  8. | |_) | |_| | |_) | |_) | (_) | | (_| | |_) |
  9. |____/ \__,_|_.__/|_.__/ \___/|_|\__,_|_.__/
  10.  
  11. @author l:39s <l39s@cock.lu>
  12.  
  13. @title Bubbolab - Content Management System
  14. @build labStarBETA 1.0.0
  15.  
  16. */
  17.  
  18. ini_set('session.gc_probability', 1);
  19. ini_set('session.gc_divisor', 10000000);
  20. ini_set('session.gc_maxlifetime', 10000000);
  21. session_set_cookie_params(10000000,"/");
  22.  
  23. session_start();
  24. error_reporting(E_ALL);
  25. error_reporting(0);
  26.  
  27. header('Content-Type: text/html; charset=utf-8');
  28.  
  29. # MySQLi
  30. $mysqli->server = "localhost";
  31. $mysqli->username = "root";
  32. $mysqli->password = "lol:39s";
  33. $mysqli->db = "wsdev_bsourcedb";
  34. $mysqli->port = "3306";
  35.  
  36. $connection = mysqli_connect($mysqli->server,$mysqli->username,$mysqli->password,$mysqli->db,$mysqli->port) or require('mysqlerror.php');
  37. if (mysqli_connect_errno($connection));
  38. //if (isset($_SERVER['HTTP_X_REAL_IP'])) $_SERVER['REMOTE_ADDR'] = $_SERVER['HTTP_X_REAL_IP']; # Cloudflare
  39.  
  40. # URLs
  41. $CMS->link = 'http://127.0.0.1/';
  42. $CMS->name = 'Bubbolab';
  43. $CMS->assets = 'web/assets';
  44. $CMS->language = 'de_DE';
  45. $CMS->footer = '%gibsnochnich%';
  46.  
  47. # Hotel Information
  48. $H->name = 'Bubbo';
  49. $H->link = 'http://Bubbo.ws';
  50.  
  51. # Filtertext /- PW HASHes
  52. function PW_HASH($password){
  53. $password = utf8_decode($password);
  54. $hash_secret = "xCg532%@%gdvf^5DGaa6&*rFTfg^FD4\$OIFThrR_gh(ugf*/";
  55. $string = md5($password.($hash_secret));
  56. return $string;
  57. }
  58.  
  59. function UF_HASH($password){
  60. $hash_secret = "xCg532%@%gdvf^5DGaa6&*rFTfg^FD4\$OIFThrR_gh(ugf*/";
  61. $string = md5($password.($hash_secret));
  62. return $string;
  63. }
  64.  
  65. function FilterText($str, $advanced=false) {
  66. if($advanced == true){ return mysqli_real_escape_string($connection, addslashes($str)); }
  67. $str = addslashes(htmlspecialchars($str));
  68. return $str;
  69. }
  70.  
  71. function HoloText($str, $advanced=false, $bbcode=false) {
  72. if($advanced == true){ return stripslashes($str); }
  73. $str = stripslashes(nl2br(htmlspecialchars($str)));
  74. return $str;
  75. }
  76.  
  77. # Initialisierung
  78. $ip = $_SERVER['REMOTE_ADDR'];
  79. $remote_ip = $_SERVER['REMOTE_ADDR'];
  80. $date_full = date('d.m.Y H:i:s');
  81. $date_normal = date('d.m.Y');
  82.  
  83. # Aktive Sessions
  84. if(isset($_SESSION['username'])) {
  85.  
  86. $rawname = FilterText($_SESSION['username']);
  87. $rawpass = FilterText($_SESSION['password']);
  88.  
  89. $sql = $connection->query("SELECT * FROM users WHERE username = '".$rawname."' AND password = '".$rawpass."' AND banned != '1' LIMIT 1");
  90.  
  91. if ($sql->num_rows < 1) {
  92. unset($_SESSION['username'], $_SESSION['password']);
  93. header("location: ".$server->link."/"); exit;
  94. }
  95.  
  96. $user = $sql->fetch_object();
  97. $sql = $connection->query("SELECT * FROM users WHERE username '$rawname' AND banned = '1'");
  98.  
  99. if($sql->num_rows > 0) {
  100. unset($_SESSION['username'], $_SESSION['password']);
  101. $_SESSION['error'] = "%banned%";
  102. header("location: ".$server->link."/"); exit;
  103. }
  104.  
  105.  
  106. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement