crunkbbfe
08-04-2008, 02:58 AM
I have the code down below, my error is that when the information is submitted, the cookies are not set. Can anyone see any problem with the script in which it would work?
<?
$login = $_POST['login'];
if(isset($login)){
$username = strip_tags($_POST['username']);
$username = strtolower($username);
$username = str_replace(" ", "", "$username");
$username = str_replace("'", "", "$username");
$username = str_replace("\"", "", "$username");
$password = strip_tags($_POST['password']);
include("include/database.php");
$date = date("U")-600;
$query = mysql_query("SELECT * FROM users WHERE
username='$username' && password='$password' ");
if(mysql_num_rows($query) < 1){
$status = "<font color='red'>Invalid Username And/Or Password</font><br
/>";
}else{
setcookie("sesuser",$username);
setcookie("sesid",$date);
$ip = $_SERVER['REMOTE_ADDR'];
$datet = date("U");
mysql_query("DELETE FROM session WHERE username='$username' ");
$ip = $_SERVER['REMOTE_ADDR'];
$date = date("U")+3600;
mysql_query("INSERT INTO session VALUES('$username', '$date', '$ip',
'$password', '$date')");
$datee = date("F jS Y g:iA");
$datey = date("U");
mysql_Query("UPDATE users SET lastlogon='$datee', lastlogo='$datey'
WHERE username='$username' ");
$page = $_POST['page'];
if(isset($page)){
echo "<script type=\"text/javascript\">
<!--
window.location = \"$page\"
//-->
</script>";
}else{
?>
<script type="text/javascript">
<!--
window.location = "member.php"
//-->
</script>
<?
}}}
include("include/logheader.php");
include("include/logininfo.php");
?>
<?
$login = $_POST['login'];
if(isset($login)){
$username = strip_tags($_POST['username']);
$username = strtolower($username);
$username = str_replace(" ", "", "$username");
$username = str_replace("'", "", "$username");
$username = str_replace("\"", "", "$username");
$password = strip_tags($_POST['password']);
include("include/database.php");
$date = date("U")-600;
$query = mysql_query("SELECT * FROM users WHERE
username='$username' && password='$password' ");
if(mysql_num_rows($query) < 1){
$status = "<font color='red'>Invalid Username And/Or Password</font><br
/>";
}else{
setcookie("sesuser",$username);
setcookie("sesid",$date);
$ip = $_SERVER['REMOTE_ADDR'];
$datet = date("U");
mysql_query("DELETE FROM session WHERE username='$username' ");
$ip = $_SERVER['REMOTE_ADDR'];
$date = date("U")+3600;
mysql_query("INSERT INTO session VALUES('$username', '$date', '$ip',
'$password', '$date')");
$datee = date("F jS Y g:iA");
$datey = date("U");
mysql_Query("UPDATE users SET lastlogon='$datee', lastlogo='$datey'
WHERE username='$username' ");
$page = $_POST['page'];
if(isset($page)){
echo "<script type=\"text/javascript\">
<!--
window.location = \"$page\"
//-->
</script>";
}else{
?>
<script type="text/javascript">
<!--
window.location = "member.php"
//-->
</script>
<?
}}}
include("include/logheader.php");
include("include/logininfo.php");
?>