Advertisement
Guest User

Untitled

a guest
Aug 17th, 2017
100
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 0.91 KB | None | 0 0
  1. <?php
  2. include("../connection.php");
  3.  
  4. $salt1 = "adfkjA(35/Sgc0adf";
  5. $salt2 = ")=ag7fs/&1fjkdgKFSAKO)";
  6.  
  7. $mypass = md5($salt1.$_POST["password"].$salt2);
  8.  
  9. $user=$_POST['username'];
  10. $mypassword=$mypass;
  11.  
  12. $user = stripslashes($user);
  13. $mypassword = stripslashes($mypassword);
  14. $user = mysql_real_escape_string($user);
  15. $mypassword = mysql_real_escape_string($mypassword);
  16.  
  17. $sql="SELECT * FROM `users` WHERE user='$user' and pass='$mypassword'";
  18. $result=mysql_query($sql);
  19.  
  20. $admin_mysql = mysql_query("SELECT admin_rights FROM `users` WHERE user='$user'") or die (mysql_error());
  21. $admin_mysql = mysql_result($admin_mysql, 0);
  22.  
  23. $count=mysql_num_rows($result);
  24.  
  25. if($count==1){
  26. if($admin_mysql==1) {
  27.    
  28. header("location: ../index.php");
  29. session_register("user");
  30.  
  31. } elseif($admin_mysql==0) {
  32.  
  33. header("location: ../index.php");
  34. session_register("user");
  35.  
  36.     }
  37. }
  38.  
  39. else {
  40. echo "Wrong Username or Password";
  41. }
  42. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement