Guest User

Untitled

a guest
Oct 31st, 2017
117
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.05 KB | None | 0 0
  1. mysql_connect(*);
  2.  
  3. if(intval($_COOKIE["logged_in"])==1)
  4. {
  5. $test_row = mysql_fetch_array(mysql_query("SELECT * FROM `users` WHERE `username` LIKE '" . $_COOKIE['username'] . "'"));
  6. if($test_row["session"] != $_COOKIE["session_id"])
  7. {
  8. header( 'Location: index.php?logout=1' ) ;
  9. }
  10. }
  11.  
  12.  
  13. function session_gen()
  14. {
  15. $length = 10;
  16. $characters = "0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
  17. $string = "";
  18. for ($p = 0; $p < $length; $p++)
  19. {
  20. $string .= $characters[mt_rand(0, strlen($characters))];
  21. }
  22. return $string;
  23. }
  24.  
  25. function RemoveCookieLive($name)
  26. {
  27. unset($_COOKIE[$name]);
  28. return setcookie($name, NULL, -1);
  29. }
  30.  
  31. if(intval($_GET["logout"])==1)
  32. {
  33. mysql_query("UPDATE `u702113482_db`.`users` SET session='null' WHERE username='" . $_COOKIE['username'] . "';");
  34. RemoveCookieLive("username");
  35. RemoveCookieLive("logged_in");
  36. RemoveCookieLive("session_id");
  37. }
  38.  
  39. $logged_in = 0;
  40.  
  41. if($_POST["username"])
  42. {
  43. $get_row = mysql_fetch_array(mysql_query("SELECT * FROM `users` WHERE `username` LIKE '" . $_POST['username'] . "'"));
  44. $atp_pass = $_POST["password"];
  45. $true_pass = $get_row["password"];
  46. if(hash("md5",$atp_pass) == $true_pass)
  47. {
  48. $session_id = $get_row['username'] . "_" . session_gen();
  49. $logged_in = 1;
  50. setcookie("logged_in", 1, time()+1200);
  51. setcookie("username", $_POST['username'], time()+1200);
  52. setcookie("session_id", $session_id , time()+1200);
  53. mysql_query("UPDATE `u702113482_db`.`users` SET session='" . $session_id . "' WHERE username='" . $_POST['username'] . "';");
  54. }
  55. else
  56. {
  57. die("<p>Inccorect details, click <a href='index.php'>here</a> to try again</p>");
  58. }
  59. }
  60.  
  61. if(intval($_COOKIE["logged_in"]) == 1)
  62. {
  63. $logged_in = 1;
  64. }
  65.  
  66. if(!$logged_in)
  67. {
  68. include "login.php";
  69. $user_id = $get_row["id"];
  70. $cur_un = "Guest";
  71. }
  72. else
  73. {
  74. if(intval($_COOKIE["logged_in"]) == 1)
  75. {
  76. $cur_un = $_COOKIE["username"];
  77. }
  78. else
  79. {
  80. $cur_un = $_POST["username"];
  81. }
  82. include "usercp.php";
  83. }
Add Comment
Please, Sign In to add comment