//print_r($_POST); include "../php/constants.php"; include "../php/functions.php"; check_login(0,0); if (strpos($PHP_SELF, 'beta')){ $baseurl = $masterurl . '/beta/'; $basesecureurl = $mastersecureurl . '/beta/'; } else { $baseurl = $masterurl . '/create/'; $basesecureurl = $mastersecureurl . '/create/'; } require_once ('../php/mysql_connect.php'); kill_session($sessionID); session_name ('sessionID'); session_start(); $_SESSION['userid'] = 0; $_SESSION['email'] = ''; if ($_REQUEST['post_email']){ if ($_REQUEST['post_email'] AND $_REQUEST['post_password']){ $query = "SELECT * FROM User WHERE sEmail = '{$_REQUEST['post_email']}' AND sPassword = '{$_REQUEST['post_password']}'"; $result = mysql_query($query); check_mysql(); while ($row = mysql_fetch_array($result, MYSQL_ASSOC)){ $found = 1; $_SESSION['userid'] = $row['pkUser']; $_SESSION['email'] = $row['sEmail']; $_SESSION['userlevel'] = $row['iUserLevel']; $_SESSION['defaultplayer'] = $row['fkPlayer']; } } if ($found){ $url = "main.php?sessionID=" . session_id(); header ("Location: $url"); exit; } else { $query = "SELECT * FROM User WHERE bLive = 1 AND sEmail = '{$_REQUEST['post_email']}'"; $result = mysql_query($query); check_mysql(); if (mysql_num_rows($result)) { $errormsg = 'Password does not match email address.'; } else if ($_REQUEST['post_email'] == ''){ $errormsg = 'Please enter your email address.'; } else if ($_REQUEST['post_password'] == ''){ $errormsg = 'Please enter your password.'; } else { $errormsg = 'Email address not found in our database.'; } } } ?>
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||