Advertisement
Guest User

Untitled

a guest
Dec 5th, 2017
68
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.58 KB | None | 0 0
  1. if (isset($_POST['check'])){
  2. if (isset($_SESSION['username'])){
  3. $usernameactual = mysqli_real_escape_string($conexion, $_SESSION['username']);
  4. $cactual = mysqli_real_escape_string($conexion, hash('sha512', hash('sha512', $_POST['cactual'])));
  5. $query1 = "SELECT * FROM `users` WHERE username='$usernameactual' and password='$cactual'";
  6. $result1 = mysqli_query($conexion,$query1);
  7. $rows2 = mysqli_num_rows($result1);
  8. if($rows2==1){
  9. $c_nohash = $_POST['cnueva'];
  10. $cnueva = hash('sha512', hash('sha512', $_POST['cnueva']));
  11. $cnueva2 = hash('sha512', hash('sha512', $_POST['cnueva_v']));
  12. $query2 = "UPDATE `users` SET `password` = '$cnueva' WHERE `username` = '$usernameactual'";
  13. if($c_nohash < 6){
  14. echo 'Tu contraseña es demasiado corta';
  15. } else {
  16. if($cnueva == $cnueva2){
  17. $cambiarclave = mysqli_query($conexion,$query2);
  18. if($cambiarclave==1){
  19. echo 'Contraseña cambiada';
  20. } else {
  21. echo 'Error inesperado';
  22. }
  23. } else {
  24. echo 'Tus contraseñas no coinciden';
  25. }
  26. }
  27. } else {
  28. echo '<div class="alert alert-danger" role="alert">
  29. <center><strong>¡Eh, para un momento!</strong> Esa contraseña no es tu contraseña actual...</center>
  30. </div>';
  31. }
  32. }
  33. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement