Guest User

Untitled

a guest
Jun 26th, 2018
122
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.76 KB | None | 0 0
  1. <?php
  2.  
  3.     session_start();
  4.     include('../config.php');
  5.     $userid =$_POST['userid'];
  6.     $psw =$_POST['psw'];
  7.     $refid =$_POST['refid'];
  8.     $capt =$_POST['capt'];
  9.     $op =$_GET['op'];
  10.   /* Pekerjaan Rumah mu ya tri, coba teruskan kode untuk memeriksa apakah captcha yang dimasukan itu bener atau tidak
  11.   *  buat dulu tabel security seperti pada contoh di database mu
  12.   *  ambil parameter refid dari login.php (<input type="hidden" ....)  contoh $refid =$_POST['refid'];
  13.   *  cek di database dengan menggunakan parameter di atas
  14.   *  periksa apakah hidden teks sama dengan yng dimasukan user (<input type="text" name="capt">)  contoh $capt =$_POST['refid'];
  15.   *
  16.   */                
  17.  
  18.  
  19.  
  20.     if($op=="in"){
  21.         $cekCapt = mysql_query("SELECT * FROM security WHERE referenced='$refid' AND hiddentext='$capt'");
  22.             //menggunaka variabel $cek2 supaya gk bentrok.
  23.         if(mysql_num_rows($cek2)=='1'){//jika berhasil akan bernilai 1
  24.         //do nothing lah
  25.         }else {
  26.         die("captcha salah <a href=\"javascript:history.back()\">kembali</a>");
  27.         }
  28.         $cek = mysql_query("SELECT * FROM user WHERE username='$userid' AND password='$psw'");
  29.         if(mysql_num_rows($cek)=='1'){//jika berhasil akan bernilai 1
  30.             $c = mysql_fetch_array($cek);
  31.             $_SESSION['userid'] = $c['username'];
  32.             $_SESSION['level'] = $c['level'];
  33.             if($c['level']=="admin"){
  34.                 header("location:homeadmin.php");
  35.             }else if($c['level']=="user"){
  36.                 header("location:homeuser.php");
  37.             }
  38.         }else{
  39.              die("password salah <a href=\"javascript:history.back()\">kembali</a>");
  40.         }
  41.     }else if($op=="out"){
  42.         unset($_SESSION['userid']);
  43.         unset($_SESSION['level']);
  44.         header("location:login.php");
  45.     }
  46.     ?>
Add Comment
Please, Sign In to add comment