Advertisement
Guest User

Untitled

a guest
Apr 6th, 2016
87
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.86 KB | None | 0 0
  1. <?php
  2. error_reporting(1);
  3. session_start();
  4. include("../common/config.php");
  5. include("../common/conn.php");
  6.  
  7. $case = '';
  8. $error_str = '';
  9. //email:
  10. $email = stripslashes($_REQUEST['email_address']);
  11.  
  12. //password:
  13. $old_password = trim($_REQUEST['old_password']);
  14. $password = trim($_REQUEST['password']);
  15. $conf_password = trim($_REQUEST['conf_password']);
  16. $get_users_qry = "Select password From users where username = '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."' AND password = '".md5($old_password)."' AND status = 1";
  17. $get_users = $db->get_row($get_users_qry,ARRAY_A);
  18. $qry = "Select email from users where email = '$email' and username != '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'";
  19. $res = mysql_query($qry);
  20. echo 'Email:' . $email;
  21. echo '<p>';
  22. echo 'Old Password: '. $old_password;
  23. echo '<p>';
  24. echo 'Password:' . $password;
  25. echo '<p>';
  26. echo 'Confrim Password:' . $conf_password;
  27. echo '<p>';
  28.  
  29. if(filter_var($email, FILTER_VALIDATE_EMAIL) && (strlen($password) > 5) && $get_users && !mysql_num_rows($res))
  30. {
  31. //update email and password
  32. $update_password = mysql_query("UPDATE users
  33. SET
  34. password='".md5($password)."' where username = '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'");
  35. $update_email = mysql_query("UPDATE users
  36. SET
  37. email='".$email."' where username = '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'");
  38. echo 'Email and Password Has been Updated!';
  39. die();
  40. }
  41.  
  42. if ($email == '' && (strlen($password) == 0))
  43. {
  44.  
  45. $error_str .= "There is nothing to update";
  46. echo $error_str;
  47. die();
  48. }
  49.  
  50. if ($email == '' && (strlen($password) == 0))
  51. {
  52. $error_str .= "Use a secure Password";
  53. echo $error_str;
  54. $case = 0;
  55. die();
  56. }
  57. else
  58. {
  59. if($email == '' && (strlen($password) < 5))
  60. {
  61. $error_str .= "Password must be atleast 5 characters";
  62. echo $error_str;
  63. $case = 0;
  64. die();
  65. }
  66. else
  67. {
  68. if ($email == '' && $password != $conf_password)
  69. {
  70. $error_str .= "Passwords Do not Match";
  71. echo $error_str;
  72. $case = 0;
  73. die();
  74. }
  75. else
  76. {
  77. if($email == '' && !$get_users)
  78. {
  79. $error_str .= "Please enter correct old password <br>";
  80. echo $error_str;
  81. $case = 0;
  82. die();
  83. }
  84.  
  85. else
  86. {
  87. //update password only!
  88. if(strlen($password) == 0)
  89. {
  90. die();
  91. }
  92. else
  93. {
  94. $update_password = mysql_query("UPDATE users
  95. SET
  96. password='".md5($password)."' where username = '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'");
  97.  
  98. echo "done-SEPARATOR-Password changed successfully";
  99. exit();
  100. }
  101. }
  102. }
  103. }
  104. }
  105.  
  106. if(strlen($password) == 0)
  107. {
  108. if (!eregi("^[_a-z0-9-]+(.[_a-z0-9-]+)*@[a-z0-9-]+(.[a-z0-9-]+)*(.[a-z]{2,3})$", $email)){
  109. $error_str .="Invalid Email <br>";
  110. echo $error_str;
  111. $case = 0;
  112. die();
  113.  
  114. }
  115. else
  116. {
  117. $qry = "Select email from tbl_admin where email = '$email' and username != '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'";
  118. $res = mysql_query($qry);
  119. if(mysql_num_rows($res))
  120. {
  121. $error_str = "$email already exist<br>";
  122. $case = 0;
  123.  
  124.  
  125. }
  126. else
  127. {
  128. //update email only!
  129. $update_email = mysql_query("UPDATE users
  130. SET
  131. email='".$email."' where username = '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'");
  132.  
  133. echo "done-SEPARATOR-Email address changed successfully";
  134. die();
  135. }
  136. }
  137. }
  138.  
  139.  
  140. if($case = 0)
  141. {
  142. echo $error_str;
  143. die();
  144. }
  145. ?>
  146.  
  147. if(strlen($password) == 0)
  148. {
  149. if (!eregi("^[_a-z0-9-]+(.[_a-z0-9-]+)*@[a-z0-9-]+(.[a-z0-9-]+)*(.[a-z]{2,3})$", $email)){
  150. $error_str .="Invalid Email <br>";
  151. echo $error_str;
  152. $case = 0;
  153. die();
  154.  
  155. }
  156. else
  157. {
  158. $qry = "Select email from tbl_admin where email = '$email' and username != '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'";
  159. $res = mysql_query($qry);
  160. if(mysql_num_rows($res))
  161. {
  162. $error_str = "$email already exist<br>";
  163. $case = 0;
  164.  
  165.  
  166. }
  167. else
  168. {
  169. //update email only!
  170. $update_email = mysql_query("UPDATE users
  171. SET
  172. email='".$email."' where username = '".$_SESSION['LOGIN_BALANCE_FRONT']['name']."'");
  173.  
  174. echo "done-SEPARATOR-Email address changed successfully";
  175. die();
  176. }
  177. }
  178. }
  179.  
  180. if ($email = '' && (strlen($password) == 0))
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement