Guest User

Untitled

a guest
Jun 20th, 2018
96
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.57 KB | None | 0 0
  1. <?php
  2. if (isset($_POST['account'])) {
  3. if ($_POST['account'] && strlen($_POST['account'])<=20 && strlen($_POST['account'])>=3 && strlen($_POST['password'])>=3 && $_POST['password'] && $_POST['password2'] && $_POST['password']==$_POST['password2']) {
  4.   if (!eregi("^[a-zA-Z0-9_]+$", $_POST['account']))
  5.     die ("<p>Error: SQL-Injection</p>");
  6.   if (!eregi("^[a-zA-Z0-9_]+$", $_POST['password']))
  7.     die ("<p>Error: SQL-Injection</p>");
  8.     $pass = ($_POST['password']);
  9.     $username = ($_POST['account']);
  10.     $result = mysql_query("SELECT * FROM account WHERE username='".$_POST['account']."'", $realmd);
  11.     if (mysql_num_rows($result) != 0) {
  12.         echo "<center><p><font color=#CC0000><b>Такой аккаунт уже существует!</b></font></p></center>";
  13.     } else {
  14.  
  15.     }
  16. } else {
  17.     echo "<center><p><font color=#CC0000><b>Проверьте правильность ввода!</b></font></p></center>";
  18. }
  19. if(count($_POST)>0){
  20.     if(isset($_SESSION['captcha_keystring']) && $_SESSION['captcha_keystring'] === $_POST['keystring']){
  21.         echo "Correct";
  22.  if (!mysql_query("INSERT INTO account (username, sha_pass_hash, email, expansion) VALUES ('$username', SHA1(CONCAT(UPPER('$username'),':',UPPER('$pass')) ), '".$_POST['email']."', $tbc)", $realmd)) {echo "<center><p><font color=#CC0000><b>Ошибка</b></font></p></center>";} else {echo "<center><p><font color=#00CC00><b>Аккаунт успешно зарегистрирован!</b></font></p></center>";}
  23.     }else{
  24.         echo "Wrong";
  25.     }
  26. }
  27. unset($_SESSION['captcha_keystring']);
  28. }
  29. ?>
Add Comment
Please, Sign In to add comment