Guest User

Untitled

a guest
Oct 11th, 2018
119
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.02 KB | None | 0 0
  1. <?php
  2.  
  3. if ( !$_SESSION['uid'] ) {
  4. if ( !$_POST['submit'] ) {
  5. ?>
  6.  
  7. <form action="?pages/Login" method="post">
  8. <table>
  9. <tr>
  10. <td>Username</td>
  11. <td><input type="text" name="username"></td>
  12. </tr>
  13. <tr>
  14. <td>Password</td>
  15. <td><input type="password" name="password"></td>
  16. </tr>
  17. <td colspan="2">
  18. <input type="submit" value="Login" name="submut">
  19. </td>
  20. </tr>
  21. </table>
  22. </form>
  23.  
  24. <?php
  25. } else {
  26.  
  27. $username = $_POST['username'];
  28. $password = md5($_POST['password']);
  29.  
  30. $errors = array();
  31.  
  32. if ( !$username ) {
  33.  
  34. $errors[1] = "Please enter a username.";
  35.  
  36. }
  37.  
  38. if ( !$password ) {
  39.  
  40. $errors[2] = "Please enter a password";
  41.  
  42. }
  43.  
  44.  
  45. $sql = "SELECT * FROM `users3` WHERE `name`='$username'";
  46.  
  47. $res = mysql_query($sql) or die(mysql_error());
  48.  
  49. $exists = mysql_num_rows($res);
  50.  
  51. if ( $exists == 0 ) {
  52.  
  53. $errors[3] = "The username does not exist!";
  54.  
  55. } else {
  56.  
  57.  
  58. $sql = "SELECT * FROM `users3` WHERE `name`='$username' AND `password`='$password'";
  59.  
  60. $res = mysql_query($sql) or die(mysql_error());
  61.  
  62. $exists = mysql_num_rows($res);
  63.  
  64. if ( $exists == 0 ) {
  65.  
  66. $errors[4] = "The username and password do not match.";
  67.  
  68. }
  69.  
  70. }
  71.  
  72.  
  73. if ( count($errors) > 0 ) {
  74.  
  75. echo "<ul>";
  76.  
  77. foreach ( $errors as $error ) {
  78. echo "<li>";
  79. echo $error;
  80. echo "</li>";
  81. }
  82.  
  83. echo "</ul>";
  84.  
  85. } else {
  86.  
  87. $sql = "SELECT * FROM `users3` WHERE `name`='$username' AND `password`='$password'";
  88.  
  89. $res = mysql_query($sql) or die(mysql_error());
  90.  
  91. $res = mysql_fetch_assoc($res);
  92.  
  93. $_SESSION['uid'] = $res['user_id'];
  94.  
  95. echo "You have successfully logged in! <a href=\"?page=Home\">Home</a><br><br>";
  96.  
  97.  
  98.  
  99.  
  100.  
  101. }
  102.  
  103.  
  104. }
  105.  
  106. }
  107.  
  108.  
  109. ?>
Add Comment
Please, Sign In to add comment