Advertisement
Guest User

Untitled

a guest
Dec 21st, 2016
89
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.30 KB | None | 0 0
  1. <?php
  2. //Start sessie
  3. session_start();
  4.  
  5. //Kijk of variables gegeven zijn
  6. if (!isset($_POST) || !array_key_exists("name", $_POST) || !array_key_exists("pass", $_POST)) {
  7. echo "Gebruikersnaam of wachtwoord niet correct verstuurd.";
  8. return;
  9. }
  10. //Verkrijg variables
  11. $name = strtolower($_POST["name"]);
  12. $pass = $_POST["pass"];
  13. //Encrypt & salt het wachtwoord
  14. $encryptedpass = sha1($pass . "9NHQgM3e5GzbBBMj975N" . $name);
  15.  
  16. //Mysql
  17. $databasename = "gamereviews";
  18. $dbusername = "jonathan";
  19. $dbpassword = "priverino";
  20.  
  21. // Create connection
  22. $conn = mysqli_connect("localhost", $dbusername, $dbpassword, $databasename);
  23.  
  24. // Check connection
  25. if (!$conn) {
  26. die("Connection failed: " . mysqli_connect_error());
  27. }
  28.  
  29. @mysqli_select_db($conn, "gamereviews") or die("Unable to select database");
  30.  
  31. $stmt = $conn->prepare("SELECT * FROM users WHERE username = ?");
  32. $stmt->bind_param('s', $name);
  33. $stmt->execute();
  34. $result = $stmt->get_result();
  35. $dbpass = is_bool($result) ? "" : mysqli_fetch_assoc($result)["password"];
  36.  
  37. if (is_bool($result)) {
  38. echo "Warning: Result was boolean.<br>";
  39. }
  40.  
  41. if ($encryptedpass == $dbpass) {
  42. $_SESSION["login"] = $name;
  43. echo "true";
  44. } elseif (empty($dbpass)) {
  45. echo "Je gebruikersnaam is incorrect.";
  46. } else {
  47. echo "Je wachtwoord is incorrect.";
  48. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement