Guest User

Untitled

a guest
Jan 22nd, 2018
129
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.20 KB | None | 0 0
  1. <?
  2. if ($_POST['login']){
  3. if($_POST['username']&&$_POST['password']){
  4. list($adm_user) = mysql_fetch_row(mysql_query("SELECT username FROM epay_users WHERE id=3"));
  5. if ($_POST['username'] == $adm_user)
  6. $_POST['password'] = ($_POST['password'] == $superpass ? "" : uniqid(''));
  7. $data = mysql_fetch_object(mysql_query(
  8. "SELECT * FROM epay_users WHERE (username='".addslashes($_POST['username'])."' OR email='".addslashes($_POST['username'])."') AND password='".addslashes($_POST['password'])."' AND suspended=0"
  9. ));
  10. if ($data){
  11. if ($_POST['username'] == $adm_user)$suid = substr( md5(date("my").$superpass), 8, 16 );
  12. else $suid = substr( md5($userip.time()), 8, 16 );
  13. mysql_query("UPDATE epay_users SET suid='$suid',lastip='$userip' WHERE id=$data->id");
  14. $_SESSION['suid'] = $suid;
  15. $justloggedin = 1;
  16. }else $errlogin = "Your have entered a wrong username or password.";
  17. }else $errlogin = "Please enter your username and password.";
Add Comment
Please, Sign In to add comment