Guest User

Untitled

a guest
Jan 29th, 2019
139
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.79 KB | None | 0 0
  1. include_once($path . 'settings.php');
  2.  
  3. $dbcon = mysql_connect($db_server, $db_user, $db_passwd); mysql_select_db($db_name);
  4.  
  5. $result = mysql_query('SELECT variable,value FROM ' . $db_prefix . 'settings');
  6.  
  7. $Settings = array();
  8.  
  9. while ($row = mysql_fetch_array($result)) {
  10. $Settings[$row['0']] = $row['1'];
  11. }
  12.  
  13. session_start(); $dbQueries = 0;
  14.  
  15. include_once('settings.php'); error_reporting(0);
  16.  
  17. $dbcon = mysql_connect($db_server, $db_user, $db_passwd); checkCon($dbcon);
  18.  
  19. $dbcon = mysql_select_db($db_name); checkCon($dbcon);
  20.  
  21. $dbcon = mysql_query('SELECT variable,value FROM ' . $db_prefix . 'settings'); $dbQueries++; checkCon($dbcon);
  22.  
  23. function checkCon ($con) { if (!$con) { echo mysql_error(); exit(); } }
  24.  
  25. error_reporting(0);
  26.  
  27. $Settings = array(); while ($row = mysql_fetch_array($dbcon)) { $Settings[$row[0]] = $row[1]; }
  28.  
  29. $auth = false; $in_user = ''; $in_password = '';
  30.  
  31. if((isset($_POST['user']) && isset($_POST['password'])) || (isset($_SESSION['user']) && isset($_SESSION['password']))) {
  32. if(isset($_SESSION['user']) && isset($_SESSION['password'])) { $in_user = $_SESSION['user']; $in_password = $_SESSION['password']; } else if(isset($_POST['user']) && isset($_POST['password'])) { if (!get_magic_quotes_gpc()) { $in_user = addslashes($_POST['user']); $in_password = addslashes($_POST['password']); } else { $in_user = $_POST['user']; $in_password = $_POST['password']; } }
  33.  
  34. $result = mysql_query('SELECT * FROM ' . $db_prefix . 'posters WHERE username = '' . $in_user . '' AND password = password('' . $in_password . '')'); $dbQueries++;
  35.  
  36. if(mysql_numrows($result) != 0) { $auth = true; $_SESSION['user'] = $in_user; $_SESSION['password'] = $in_password; } else { $bad_details = true; }
  37.  
  38. $userDetails = array(); while($row = mysql_fetch_assoc($result))
  39. { $userDetails = $row; }
Add Comment
Please, Sign In to add comment