Guest User

Untitled

a guest
Apr 21st, 2018
118
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.69 KB | None | 0 0
  1. <?php
  2. require_once("include/db_con.php");
  3. $myusername = $_POST['username'];
  4. $mypassword = $_POST['password'];
  5.  
  6. $myusername = stripslashes($myusername);
  7. $mypassword = stripslashes($mypassword);
  8. $myusername = mysqli_real_escape_string($myusername);
  9. $mypassword = mysqli_real_escape_string($mypassword);
  10.  
  11. $mypassword = md5(sha1($mypassword));
  12.  
  13. $sql = "SELECT * FROM users WHERE username='$myusername' and password='$mypassword'";
  14. $result = mysqli_query($db_con,$sql);
  15.  
  16. $count = mysql_num_rows($result);
  17. if ($count == 1) {
  18. session_start();
  19. $_SESSION['username'] = $myusername;
  20. header("location:staff.php");
  21. }
  22. else {
  23. header("location:staff.php?error=1");
  24. }
  25. ?>
Add Comment
Please, Sign In to add comment