?
2009-12-16 09:19:07 UTC
include 'functions.php';
if (loggedin())
{
header("Location: userarea.php");
}
if ($_POST['login'])
{
$username = strip_tags($_POST['username']);
$password = strip_tags($_POST['password']);
if ($username&&$password)
{
$login = mysql_query("SELECT * FROM login WHERE username='$username'");
while ($row = mysql_fetch_assoc($login))
{
$db_password = $row['password'];
if (md5($password)==$db_password)
{
$loginok = TRUE;
}
else
$loginok = FALSE;
if ($loginok==TRUE)
{
setcookie("username",$username, time()+172800);
header("Location: userarea.php");
$admin = $row['admin'];
if ($admin==1) {
setcookie("admin",$username, time()+172800);
}
}
if ($loginok=="FALSE")
{
echo "Incorrect username or password.";
}
}
}
else
echo "Please enter a username and password.";
}
?>
I have looked over this code many times and I haven't really noticed anything wrong. Does anyone see something I don't or is this just an issue with IE?
Thanks.