Guest User

Untitled

a guest
Jan 5th, 2018
83
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.12 KB | None | 0 0
  1. <?php
  2.  
  3. include('check.php');
  4. $user = $_SESSION['username'];
  5.  
  6. if($user)
  7. {
  8. //user is logged in
  9. if (isset($_POST['submit']))
  10.  
  11. {
  12. //check fields
  13.  
  14. $oldpassword = md5($_POST['oldpassword']);
  15. $newpassword = md5($_POST['newpassword']);
  16. $repeatnewpassword = md5($_POST['repeatnewpassword']);
  17.  
  18. // Connect to server and select databse.
  19. $host="localhost"; // Host name
  20. $username=""; // Mysql username
  21. $password=""; // Mysql password
  22. $db_name=""; // Database name
  23.  
  24. mysql_connect("$host", "$username", "$password")or die("cannot connect");
  25.  
  26. $queryget = mysql_query("SELECT password FROM members WHERE username='$user'");
  27.  
  28. if($queryget === FALSE) {
  29. die(mysql_error()); // TODO: better error handling
  30. }while($row = mysql_fetch_array($queryget))
  31.  
  32. {
  33. $oldpassworddb = $row['password'];
  34.  
  35. }
  36. //check passwords
  37.  
  38. if ($oldpassword==$oldpassworddb)
  39. {
  40. //check new passowrds
  41. if($newpassword==$repeatnewpassword)
  42. {
  43. //success
  44. //change password in db
  45. $querychange = mysql_query("UPDATE members SET password='$newpassword' WHERE username ='$user'");
  46. header( "refresh:2;url=logout.php" );
  47. die("Your password has successfully been changed.");
  48.  
  49.  
  50.  
  51. }
  52. else
  53. die("Your new passwords do not match");
  54. }
  55. else
  56. die("Password doesn't match");
  57. }
  58. else{
  59. echo"Some text";
  60. }
  61.  
  62. }
  63. ?>
  64.  
  65. <?php
  66.  
  67. include('check.php');
  68. $user = $_SESSION['username'];
  69.  
  70. if($user)
  71. {
  72. //user is logged in
  73. if (isset($_POST['submit']))
  74.  
  75. {
  76. //check fields
  77.  
  78. $oldpassword = md5($_POST['oldpassword']);
  79. $newpassword = md5($_POST['newpassword']);
  80. $repeatnewpassword = md5($_POST['repeatnewpassword']);
  81.  
  82. // Connect to server and select databse.
  83. $host="localhost"; // Host name
  84. $username=""; // Mysql username
  85. $password=""; // Mysql password
  86. $db_name=""; // Database name
  87. $mysqli = new mysqli($host,$username,$password,$db_name);
  88.  
  89. if (mysqli_connect_errno()) {
  90. printf("Falló la conexión failed: %sn", $mysqli->connect_error);
  91. exit();
  92. }
  93.  
  94. $queryget = $mysqli->query("SELECT password FROM members WHERE
  95. username='$user'");
  96.  
  97. if($queryget === FALSE) {
  98. die($mysqli->error()); // TODO: better error handling
  99. }
  100. while($row = $mysqli->fetch_array(MYSQLI_NUM){
  101. $oldpassworddb = $row['password'];
  102. }
Add Comment
Please, Sign In to add comment