Advertisement
Guest User

Untitled

a guest
Oct 16th, 2018
102
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.97 KB | None | 0 0
  1. <?php include('header.php'); ?>
  2. <?php
  3.  
  4. $output = NULL;
  5.  
  6. // Check Form
  7.  
  8. if(isset($_POST['submit'])){
  9. $username = $_POST['username'];
  10. $password = $_POST['password'];
  11.  
  12. if(empty($username) || empty($password)) {
  13. $output .= "Please enter all fields";
  14. } else {
  15. //Connect to the database
  16. $mysqli = new mysqli('localhost','root','','movie_talk');
  17.  
  18. $username = $mysqli->real_escape_string($username);
  19. $password = $mysqli->real_escape_string($password);
  20.  
  21. $query12 = mysqli_query($mysqli , "SELECT * FROM users WHERE username = '$username'");
  22. $UserRow = mysqli_fetch_array($query12);
  23.  
  24. $query = $mysqli->query("SELECT * FROM users WHERE username = '$username' AND password = ('$password')");
  25. $query2 = mysqli_query($mysqli, "SELECT * FROM users WHERE username = '$username' AND password = ('$password')");
  26. $row = mysqli_fetch_array($query2);
  27.  
  28. if($query->num_rows == 0){
  29. $output = "Invalid username/password";
  30. } else{
  31. //User logged in successfully
  32. $_SESSION['loggedin'] = TRUE;
  33. $_SESSION['user'] = $username;
  34. $_SESSION['access_level'] = $row['access_level'];
  35. $_SESSION['real_name'] = $row['real_name'];
  36. $_SESSION['email'] = $row['email'];
  37. $_SESSION['birth_year'] = $row['birth_year'];
  38. $_SESSION['country'] = $row['country'];
  39.  
  40.  
  41. $output = "Login Successful";
  42. }
  43. }
  44. }
  45.  
  46. if(!isset($_SESSION['loggedin'])) {
  47. // Display login form
  48. echo "Welcome Guest.<p />";
  49.  
  50. ?>
  51.  
  52. <form method="POST">
  53. Username: <input type="TEXT" name="username" />
  54. <p />
  55. Password: <input type="PASSWORD" name="password" />
  56. <br/>
  57. <input type="SUBMIT" name="submit" value="Log In" />
  58. <form>
  59. <?php
  60. } else {
  61. //Display welcome user
  62. }
  63.  
  64. if (strtotime ($UserRow["banned_until"]) > time())
  65. {
  66. echo "You have been banned";
  67. session_destroy();
  68. }
  69.  
  70. echo $output;
  71. if(isset($_SESSION['loggedin'])) {
  72. header('refresh:1;index.php');
  73. }
  74. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement