From 12734da8826299ffd24c0a15f6dbf205892d7221 Mon Sep 17 00:00:00 2001
From: root
Date: Mon, 14 Apr 2014 08:35:13 +0200
Subject: Pushed to v3
---
oldwww/member_login.php | 109 ++++++++++++++++++++++++++++++++++++++++++++++++
1 file changed, 109 insertions(+)
create mode 100644 oldwww/member_login.php
(limited to 'oldwww/member_login.php')
diff --git a/oldwww/member_login.php b/oldwww/member_login.php
new file mode 100644
index 0000000..8628a44
--- /dev/null
+++ b/oldwww/member_login.php
@@ -0,0 +1,109 @@
+Login
+
| |
+ Register |
+ | |
+" ;
+ $name = "Gast";
+
+} else {
+ header("Location: account.php");
+ exit;
+ $account ="Account |
+ | |
+";
+}
+
+if ($_SERVER['REQUEST_METHOD'] == 'POST') {
+ $username = $_POST["username"];
+ $passwort = $_POST["password"];
+
+ $safe_username = SQLite3::escapeString("$username");
+ $safe_passwort = SQLite3::escapeString("$passwort");
+
+ $db_check = new SQLite3("../database/database.sqlite");
+ $salt_db = $db_check->query("SELECT salt FROM user WHERE name='$safe_username';");
+ while($salt_array = $salt_db->fetchArray(SQLITE3_NUM)){
+ foreach($salt_array as $firstelement){
+ $salt=$firstelement;
+ }
+ }
+
+ $password = "$salt"."$passwort";
+ $hash_password = md5($password);
+ for($i=0;$i<15000;$i++)
+ $hash_password = md5($hash_password);
+
+ $real_password_db = $db_check->query("SELECT password FROM user WHERE name='$safe_username';");
+ while($real_password_array = $real_password_db->fetchArray(SQLITE3_NUM)){
+ foreach($real_password_array as $secondelement){
+ $real_password=$secondelement;
+ }
+ }
+
+ if ($real_password == $hash_password) {
+
+ $_SESSION["username"] = $_POST["username"];
+ header("Location: member_login.php?stat=1");
+
+ } else {
+ header("Location: member_login.php?stat=2");
+ }
+
+} else {
+
+if ($_GET["stat"] == 2) {
+ $failure="
Name und/oder Passwort sind falsch!
";
+} else {
+ if ($_GET["stat"] == 1) {
+ header("Location: account.php");
+ exit;
+ }
+}
+
+
+echo "
+
+
+
+
+
+
JUNGE GEMEINDE ADLERSHOF
+
+
+
+
+
+
+ Hallo $name,
+ hier kannst du dich für den Mitgliederbereich einloggen.
+
+
+ Noch kein eigenes Passwort? Dann
registrier dich einfach.
+ $failure
+
+
+
+
+