From 82185753906709f9944a07c35a809736cf979afe Mon Sep 17 00:00:00 2001 From: root Date: Sun, 2 Mar 2014 00:13:01 +0100 Subject: new folder etc --- www/check.php | 105 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 105 insertions(+) create mode 100644 www/check.php (limited to 'www/check.php') diff --git a/www/check.php b/www/check.php new file mode 100644 index 0000000..3e575a9 --- /dev/null +++ b/www/check.php @@ -0,0 +1,105 @@ +query("SELECT salt FROM user WHERE name='$username';"); + while($salt_array = $salt_db->fetchArray(SQLITE3_NUM)){ + foreach($salt_array as $firstelement){ + $salt=$firstelement; + } + } + + $password = "$salt"."$passwort"; + $hash_password = md5($password); + for($i=0;$i<15000;$i++) + $hash_password = md5($hash_password); + + $real_password_db = $db->query("SELECT password FROM user WHERE name='$username';"); + while($real_password_array = $real_password_db->fetchArray(SQLITE3_NUM)){ + foreach($real_password_array as $secondelement){ + $real_password=$secondelement; + } + } + +/*___Einloggen___*/ +if ($real_password == $hash_password) { + + $_SESSION["login"] = true; + $_SESSION["username"] = "$username"; + +/*___Datenbankabfrage: Spruch___*/ + $zufall = mt_rand(1,52); + + $zufall = SQLite3::escapeString("$zufall"); + $ergebnis = $db->query("SELECT * FROM sprueche where id=$zufall;"); + + while($row=$ergebnis->fetchArray()){ + $spruch = $row["spruch"]; + } + + +echo" + + + + + + Login: Random Quote. + + + + + + + + +
+
+Zitat Nummer #$zufall

+$spruch +
+ +

+
Fortschritt:

+
+   + +
+ +

+
Überspringen
+ +
+ + + +"; +header("Refresh: 7; /"); +} else { +header("Location: login.php?failure=1"); +} +?> -- cgit v1.2.3