<?php // *** Validate request to login to this site. if (!isset($_SESSION)) { session_start(); } $loginFormAction = $_SERVER['PHP_SELF']; if (isset($_GET['accesscheck'])) { $_SESSION['PrevUrl'] = $_GET['accesscheck']; } if (isset($_POST['myusername'])) { $loginUsername=$_POST['myusername']; $password=md5(md5($_POST['mypassword'].'salt')); $MM_fldUserAuthorization = ""; $MM_redirectLoginSuccess = "http://www.play4.net/login.php"; $MM_redirectLoginFailed = "http://www.play4.net/forums"; $MM_redirecttoReferrer = false; mysql_select_db($database_vb, $vb); $LoginRS__query=sprintf("SELECT username, password, salt FROM `user` WHERE username=%s", GetSQLValueString($loginUsername, "text")); $LoginRS = mysql_query($LoginRS__query, $vb) or die(mysql_error()); $loginFoundUser = mysql_fetch_array($LoginRS); if ($loginFoundUser && (md5(md5($_POST['mypassword']) . $loginFoundUser['salt']) == $loginFoundUser['password'])) { $loginStrGroup = ""; //declare two session variables and assign them $_SESSION['MM_Username'] = $loginUsername; $_SESSION['MM_UserGroup'] = $loginStrGroup; if (isset($_SESSION['PrevUrl']) && false) { $MM_redirectLoginSuccess = $_SESSION['PrevUrl']; } header("Location: " . $MM_redirectLoginSuccess ); } else { header("Location: ". $MM_redirectLoginFailed ); } } ?>