1. <?php
  2. if (!isset($_POST['username']) || !isset($_POST['password']))
  3. {
  4. echo '<META HTTP-EQUIV="Refresh" Content="0; URL=index.php">';
  5. }
  6.  
  7. elseif (empty($_POST['username']) || empty($_POST['password']))
  8. {
  9. echo '<META HTTP-EQUIV="Refresh" Content="0; URL=index.php">';
  10. }
  11. else
  12. {
  13. $dbHost = "localhost";
  14. $dbUser = "";
  15. $dbPass = "";
  16. $dbDatabase = "";
  17.  
  18. $db = mysql_connect("$dbHost", "$dbUser", "$dbPass") or die ("Kunde inte ansluta till Databasen");
  19. $user = mysql_real_escape_string($_POST['username']);
  20. $pass = md5($_POST['password']);
  21.  
  22. mysql_select_db("$dbDatabase", $db) or die ("Kunde inte hitta $dbDatabase");
  23.  
  24. $result=mysql_query("select * from members where username='$user' AND password='$pass'", $db);
  25.  
  26. $rowCheck = mysql_num_rows($result);
  27. if($rowCheck > 0)
  28. {
  29. while($row = mysql_fetch_array($result))
  30. {
  31. session_start();
  32. $_SESSION['username'] = $user;
  33. $_SESSION['lastpage'] = 'login.php';
  34.  
  35. echo '<META HTTP-EQUIV="Refresh" Content="1; URL=edit.php">';
  36. }
  37. }
  38. else
  39. {
  40.  
  41. echo 'Inkorrekt Användarnamn eller Lösenord. Prova igen!';
  42. }
  43. }
  44. ?>
  45.