Guest User

Untitled

a guest
May 3rd, 2018
96
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.38 KB | None | 0 0
  1. <?php
  2.  
  3. include_once("include/config.php");
  4.  
  5. session_start();
  6.  
  7. $go = mysql_real_escape_string(trim($_GET['go']));
  8.  
  9. if (isset($go)) {
  10. if ($go == "auth") {
  11. if (isset($_POST['auth'])) {
  12.  
  13. $login = mysql_real_escape_string($_POST['login']);
  14. $password = md5($_POST['password']);
  15.  
  16. $join = mysql_query("SELECT `login`, `password`, `access` FROM `maxim_db_user` WHERE login='".$login."' AND password='".$password."'");
  17.  
  18. $db_user = mysql_fetch_array($join);
  19.  
  20. if(!($db_user <= 0)) {
  21.  
  22. if($db_user['login'] == $login and $db_user['password'] == $password) {
  23.  
  24. $_SESSION['login'] = $login;
  25. $_SESSION['password'] = $password;
  26. $_SESSION['access'] = $db_user['access'];
  27.  
  28. header("Location: /user.php");
  29.  
  30. } else {
  31.  
  32. echo"Логин и пароль Не верные!";
  33.  
  34. }
  35.  
  36. } else {
  37.  
  38. echo"Логин и пароль Не верные!2";
  39.  
  40. }
  41. } else {
  42.  
  43. header("Location: /404.php");
  44.  
  45. }
  46. } else {
  47.  
  48. echo"Wtf?? Где GET потерял? :D";
  49.  
  50. }
  51. }
  52. ?>
Add Comment
Please, Sign In to add comment