• Login
  • Register
  • Zoek
This Thread
  • Everywhere
  • This Thread
  • This Forum
  • Articles
  • Pages
  • Forum
  • Filebase Entry
  • More Options

ICTscripters

Dé plek voor IT

Dé plek voor IT

Login

Geavanceerde opties
  1. Home
  2. Forum
    1. Alle berichten
    2. Recente activiteiten
  3. ICT Nieuws
  4. Blog
  5. Marktplaats
    1. Werk
    2. Advertenties
    3. Domeinnamen
    4. Websites
    5. Design & lay-outs
    6. Scripts
    7. Overige
  6. Design
  7. Leden
    1. Actieve bezoekers
    2. Team
    3. Leden zoeken
  8. Downloads
  9. Goedkope domeinnamen
  1. Home
  2. Forum
    1. Alle berichten
    2. Recente activiteiten
  3. ICT Nieuws
  4. Blog
  5. Marktplaats
    1. Werk
    2. Advertenties
    3. Domeinnamen
    4. Websites
    5. Design & lay-outs
    6. Scripts
    7. Overige
  6. Design
  7. Leden
    1. Actieve bezoekers
    2. Team
    3. Leden zoeken
  8. Downloads
  9. Goedkope domeinnamen
  1. Home
  2. Forum
    1. Alle berichten
    2. Recente activiteiten
  3. ICT Nieuws
  4. Blog
  5. Marktplaats
    1. Werk
    2. Advertenties
    3. Domeinnamen
    4. Websites
    5. Design & lay-outs
    6. Scripts
    7. Overige
  6. Design
  7. Leden
    1. Actieve bezoekers
    2. Team
    3. Leden zoeken
  8. Downloads
  9. Goedkope domeinnamen
  1. Dé plek voor IT - ICTscripters
  2. Forum
  3. Scripting & programmeren
  4. PHP + SQL

Forum

  • Ictscripters Chat

    Jeffrey.Hoekman 26 juni 2026 om 16:21
  • Het oorspronkelijke Criminals Script

    Jeroen.G 24 juni 2026 om 09:21
  • StraatBaas is back, maar hoe?!

    Syntax 17 juni 2026 om 10:28
  • RPG game gebouwd met AI

    Frenzo.Webservice 11 juni 2026 om 19:44
  • Het Grote Vibe Code Topic

    Syntax 1 juni 2026 om 20:05
  • PWYL source gezocht

    Syntax 29 mei 2026 om 14:03
  • Help testers nodig voor android app Urgent

    Servertjee 20 februari 2026 om 12:07
  • Partner Gezocht om meerdere NFT Collecties op Open Sea te Plaatsen

    Servertjee 20 februari 2026 om 12:06

Marktplaats

  • 4-letter domein: Togi.nl

    evesi 17 juni 2026 om 17:08
  • 359 Nieuwe Domeinnamen Mei 2026

    shiga 1 juni 2026 om 12:45
  • Sicarras.com - Moderne Mafia Text-Based RPG

    Jeffrey.Hoekman 27 mei 2026 om 17:40

username,password

  • Superior
  • 16 oktober 2009 om 11:48
  • Closed
  • Superior
    Master
    Berichten
    1.947
    • 16 oktober 2009 om 11:48
    • #1

    Goedemorgen allemaal,

    Ik ben bezig met een login script maar krijg wat foutjes.
    Hij controleert het wachtwoord niet helemaal correct.
    Heb zelf al aardig wat geprobeerd maar kom er niet meer uit.
    Misschien dat jullie zien wat ik fout doe (hoop ik).

    PHP
    <?PHP
    if(isset($_POST['login'],$_POST['pass']))
    {
    	#Secure inputs
    	$user	= checkInput($_POST['login']);
    	$pass	= checkInput($_POST['pass']);
    	$passw	= generateHash($pass); //Set salt tro password
    	
    	$mysql	= mysql_query("SELECT login,pass,status FROM `users` WHERE `login`='". $user ."' AND `pass`='". $passw ."' LIMIT 1") or die(mysql_error());
    	
    	if(($data = mysql_fetch_object($mysql)) && $data->status == "alive")
    	{
    		mysql_query("UPDATE `users` SET `online`=NOW() WHERE `id`='". $data->id ."' LIMIT 1") or die(mysql_error());
    		
    		$_SESSION['login']	= $data->login;
    		$_SESSION['IP']		= $_SERVER['REMOTE_ADDR'];
    		
    		$mysql	= mysql_query("SELECT *,DATE_FORMAT(`signup`,'%d %m %Y %H:%i:%s') FROM `users` WHERE `login`='". $_SESSION['login'] ."' LIMIT 1") or die(mysql_error());
    		
    		$_SESSION['data']	= mysql_fetch_object($mysql);
    	}
    }
    if(isset($_GET['x']) && $_GET['x'] == "logout")
    {
    	begintable("Logout");
    	#--------------------
    	echo("Goodbye <b>".$data->login."</b>,<br>
    		  <br>
    		  See you next time on Gangsterscity.eu!");
    	echo("<meta http-equiv=\"Refresh\" content=\"3;url=http://www.gangsterscity.eu/ENGLISH\" />");
    	#--------------------
    	closetable();
    	
    	unset($_SESSION['data']);
    	unset($_SESSION['IP']);
    	unset($_SESSION['login']);
    }
    elseif(isset($_GET['x']) && $_GET['x'] == "lostpass")
    {
    	if(isset($_GET['id'],$_GET['code']))
    	{
    		#Secure inputs
    		$id		= checkInput($_GET['id']);
    		$code	= checkInput($_GET['code']);
    		
    		$mysql	= mysql_query("SELECT id,code,area,login FROM `temp` WHERE `id`='". $id ."' AND `code`='". $code ."' AND `area`='lostpass'") or die(mysql_error());
    		
    		if($data = mysql_fetch_object($mysql))
    		{
    			$mysql	= mysql_query("SELECT login,email FROM `users` WHERE `login`='". $data->login ."'") or die(mysql_error());
    			$data	= mysql_fetch_object($mysql);
    			
    			include_once("include/rndPass.class.php");
    			
    			$pass	= new rndPass(6);
    			$passw	= $pass->passGen();
    			$pass	= generateHash($passw);
    			
    			mysql_query("UPDATE `users` SET `pass`='". $pass ."' WHERE `id`='". $data->id ."' LIMIT 1") or die(mysql_error());
    			mysql_query("DELETE FROM `temp` WHERE `id`='". $id ."'") or die(mysql_error());
    			
    			$subj	= "Reset Password - Step 2/2";
    			$emess	= "Dear ".$data->login.",
    			Your information was requested by ".$_SERVER['REMOTE_ADDR'].".
    			
    			Username: ".$data->login."
    			Password: ".$passw."
    			
    			You can log in with this information at www.gangsterscity.eu
    			
    			Best regards,
    			http://www.gangsterscity.eu";
    			$head .= "From: Gangsterscity.eu<[email protected]>";
    			
    			@mail($data->email, $subj, $emess, $head);
    			
    			begintable("Reset password");
    			#----------------------------
    			echo("Your new password is sent to your email address.");
    			#----------------------------
    			returnForm();
    			
    			closetable();
    		}
    	}
    	elseif(isset($_POST['submit']) && $_POST['login'] == true)
    	{
    		$login	= checkInput($_POST['login']);
    		$mysql	= mysql_query("SELECT login,email,status FROM `users` WHERE `login`='". $login ."'") or die(mysql_error());
    		
    		if($data = mysql_fetch_object($mysql))
    		{
    			include_once("include/rndPass.class.php");
    			
    			$code	= new rndPass(6);
    			$code	= $code->passGen();
    			
    			mysql_query("INSERT INTO `temp`(login,code,area,time) values('".$data->login."','".$code."','lostpass',NOW())") or die(mysql_error());
    			
    			$id		= mysql_insert_id();
    			$subj	= "Reset Password - Step 1/2";
    			$emess	= "Your login information whas requested by: ".$_SERVER['REMOTE_ADDR'].".
    			
    			If you did not requested this email please ignore this, no changes will be made.
    			
    			Did you requested for a new password?
    			
    			Follow this link:\nhttp://www.gangsterscity.eu/?gc=login&x=lostpass&id=".$id."&code=".$code."
    			
    			Best regards,
    			http://www.gangsterscity.eu";
    			$head .= "From: Gangsterscity.eu<[email protected]>";
    			
    			@mail($data->email, $subj, $emess, $head);
    			
    			begintable("Reset Password");
    			#----------------------------
    			echo("There is an email sent to this account with further instructions<br>
    				  <br>
    				  See also <font color=red>your spam email!</font>");
    			#-----------------------------
    			returnForm();
    			
    			closetable();
    		}
    		else
    		
    		begintable("Reset Password");
    		#----------------------------
    		echo("there is no user with this username/email address!");
    		#----------------------------
    		returnForm();
    		
    		closetable();
    	}
    	elseif(isset($_POST['submit']) && $_POST['email'] == true)
    	{
    		$email	= checkInput($_POST['email']);
    		$mysql	= mysql_query("SELECT login,email,status FROM `users` WHERE `email`='". $email ."'") or die(mysql_error());
    		
    		if($data = mysql_fetch_object($mysql))
    		{
    			include_once("include/rndPass.class.php");
    			
    			$code	= new rndPass(6);
    			$code	= $code->passGen();
    			
    			mysql_query("INSERT INTO `temp`(login,code,area,time) values('".$data->login."','".$code."','lostpass',NOW())") or die(mysql_error());
    			
    			$id		= mysql_insert_id();
    			$subj	= "Reset Password - Step 1/2";
    			$emess	= "Your login information whas requested by: ".$_SERVER['REMOTE_ADDR'].".
    			
    			If you did not requested this email please ignore this, no changes will be made.
    			
    			Did you requested for a new password?
    			
    			Follow this link:\nhttp://www.gangsterscity.eu/?gc=login&x=lostpass&id=".$id."&code=".$code."
    			
    			Best regards,
    			http://www.gangsterscity.eu";
    			$head .= "From: Gangsterscity.eu<[email protected]>";
    			
    			@mail($data->email, $subj, $emess, $head);
    			
    			begintable("Reset Password");
    			#----------------------------
    			echo("There is an email sent to this account with further instructions<br>
    				  <br>
    				  See also <font color=red>your spam email!</font>");
    			#-----------------------------
    			returnForm();
    			
    			closetable();
    		}
    		else
    		
    		begintable("Reset Password");
    		#----------------------------
    		echo("there is no user with this username/email address!");
    		#----------------------------
    		returnForm();
    		
    		closetable();
    	}
    	begintable("Forgot Password");
    ?>
    Send your username and password to your email address<br>
    Because it is possible that you can lose your login information for this multiplayer
    game loses, you can retrieve your information here again. <br>
    However, abuse of the this form will be punished.<br />
    <br />
    <form method='post'>
    <table width='100%' cellpadding='0' cellspacing='3' border='0'>
    	<tr>
          <td width='150'>Username:</td>
          <td><input type='text' name='login' /></td>
        </tr>
       	<tr>
          <td colspan='2'><br />
          <small>*If you do not remember your username, you
              can ask it with your e-mail address to.*</small><br />
              <br /></td>
        </tr>
        <tr>
          <td width='150'>E-mail address:</td>
          <td><input type='text' name='email' /></td>
        </tr>
        <tr>
          <td width='150'>&nbsp;</td>
          <td><input type='submit' name='submit' value='Sent password' /></td>
        </tr>
    </table>
    </form>
    <?PHP
    endtable();
    }
    else if($data)
    {
    	if($data->status == "killed")
    	{
    		include_once("secretError/killed.php");
    	}
    	if($data->status == "banned")
    	{
    		include_once("secretError/banned.php");
    	}
    	else
    	
    	begintable("Log in ".$data->login);
    	#----------------------------------
    	echo("You are now logged in, please wait...");
    	echo("<meta http-equiv=\"Refresh\" content=\"3;url=http://www.gangsterscity.eu/ENGLISH\" />");
    	#----------------------------------
    	closetable();
    }
    else {
    	
    	if(isset($_POST['login'],$_POST['pass']))
    	{
    		begintable("Log in - Error");
    		#----------------------------
    		echo("<font color='red'>Wrong username or password, please try again!</font>");
    		#----------------------------
    		returnForm();
    		
    		closetable();
    	}
    	begintable("Log in");
    ?>
    <form method='post'>
    <table width='100%' cellpadding='0' cellspacing='3' border='0'>
    	<tr>
          <td width='150'>Username:</td>
          <td><input type='text' name='login' maxlength='16' style='width:150px;'></td>
        </tr>
        <tr>
          <td width='150'>Password:</td>
          <td><input type='password' name='pass' style='width:150px;'></td>
        </tr>
        <tr>
          <td width='150'>&nbsp;</td>
          <td><input type='submit' name='submit' style='width:100px;' value='Log in'></td>
        </tr>
        <tr>
          <td colspan='2' align='center'><br><a href='?gc=login&x=lostpass'>Forgot password?</a><br><br></td>
     	</tr>
    </table>
    </form>
    <?PHP
    endtable();
    }
    ?>
    Toon Meer
  • Jannick
    nyan nyan nyan nyan
    Berichten
    1.972
    • 16 oktober 2009 om 11:55
    • #2
    PHP
    if((isset($_POST['login']) && (isset($_POST['pass']))) // etc


    Volgens mij moet je dan weer een isset aanroepen, en kijken of ze allebei overeenkomen :)

  • Superior
    Master
    Berichten
    1.947
    • 16 oktober 2009 om 12:00
    • #3

    Jannick
    Dit werkt helaas niet, ik krijg enkel dit gedeelte te zien.

    PHP
    if(isset($_POST['login'],$_POST['pass']))
        {
            begintable("Log in - Error");
            #----------------------------
            echo("<font color='red'>Wrong username or password, please try again!</font>");
            #----------------------------
            returnForm();
            
            closetable();
        }

    En ja ik voer de correcte gegevens in :p

  • Jannick
    nyan nyan nyan nyan
    Berichten
    1.972
    • 16 oktober 2009 om 12:07
    • #4

    Als ik de code zie, dan word er een error weergegeven als beide waarden gepost zijn? Moet dat in dit geval wel zo?

  • Superior
    Master
    Berichten
    1.947
    • 16 oktober 2009 om 13:23
    • #5

    Als de gegevens niet kloppen hoort hij de error hierboven te weergeven.
    Enkel doet hij dit ook als de gegevens wel kloppen.

  • Jannick
    nyan nyan nyan nyan
    Berichten
    1.972
    • 16 oktober 2009 om 13:52
    • #6

    In dat geval moet je die errortekst in een else zetten, of een ! voor "isset" zetten :)

  • MrMees
    De causeur!
    Berichten
    464
    • 16 oktober 2009 om 18:22
    • #7

    Laat de naam en password eens echoen nadat je ze door je check hebben gehaald, klopt het dan nog steeds?

    Rembo&amp;amp;Rembo.

    http://www.criminalspoint.com/db/artikel/317.html

  • Superior
    Master
    Berichten
    1.947
    • 16 oktober 2009 om 18:50
    • #8

    Dit is inmiddels opgelost.

    Kwam door me password salt die ik vergat om te zetten :p

    :slotje:

  • Dein
    Master
    Berichten
    2.614
    • 16 oktober 2009 om 18:52
    • #9

    :slotje:

    Verklein je links met http://url2s.nl

Participate now!

Heb je nog geen account? Registreer je nu en word deel van onze community!

Maak een account aan Login

ICT Nieuws

  • Quanscient ontvangt €10M om AI- en kwantum-native hardware engineering te bevorderen - Tech.eu

    ICTscripters 27 mei 2026 om 12:03
  • Datalek bij leverancier Canvas - Universiteit van Amsterdam

    ICTscripters 10 mei 2026 om 12:03
  • Data privacy in 2026: Hoe de naleving van GDPR verandert

    ICTscripters 8 mei 2026 om 12:16

Blogs

  • Functioneel ontwerp

    Dees 28 december 2014 om 12:38
  • Access Control List implementatie in PHP/MySQL - deel 1/2

    FangorN 28 december 2018 om 12:35
  • Access Control List implementatie in PHP/MySQL - deel 2/2

    FangorN 29 december 2018 om 12:37

Gebruikers die dit topic bekijken

  • 1 Gasten
  1. Marktplaats
  2. Design
  3. Voorwaarden
  4. Ons team
  5. Leden
  6. Geschiedenis
  7. Regels
  8. Links
  9. Privacy Policy
ICTscripters ©2005 - 2026 , goedkope hosting door DiMoWeb.com, BE0558.915.582
Sponsors: Beste kattenhotel provincie Antwerpen | Beste Zetes eid kaartlezer webshop
Style: Nexus by cls-design
Stylename
Nexus
Manufacturer
cls-design
Licence
Commercial styles
Help
Supportforum
Visit cls-design