Commit 33811494 authored by Nico Schallehn's avatar Nico Schallehn

Username und passwort auf sha265 umgestellt

parent 983a38ef
......@@ -28,7 +28,7 @@ if(isset($_POST['ok']))
{
$result = mysql_query("SELECT id, pass, name FROM user WHERE name = '$username'");
$user = mysql_fetch_array($result);
if($user['pass'] == $passwort)
if($user['pass'] == hash("sha256",$passwort)) // )
{
$_SESSION['chatuserid'] = $user['id'];
$_SESSION['name'] = $user['name'];
......@@ -51,7 +51,7 @@ if(isset($_POST['ok']))
if($user['anz'] == 0 AND $_POST['username'] != "" AND $_POST['pass'] != ""){
$_SESSION['chatuserid'] = $user['id'];
$_POST['username'] = htmlentities($_POST['username']);
$_POST['pass'] = htmlentities($_POST['pass']);
$_POST['pass'] = hash("sha256", htmlentities($_POST['pass']));
mysql_query("INSERT INTO user (name, pass) VALUES ('{$_POST['username']}', '{$_POST['pass']}')");
mysql_query("INSERT INTO chat (nachricht, user_id, userchange, hideuser, chat_time) VALUES ('<b>{$_POST['username']}</b> hat sich registriert', '{$_SESSION['chatuserid']}', '1', '1', '".time()."')");
AdminLogAdd("{$_POST['username']} hat sich registiert!", $_SESSION['chatuserid'], 0);
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment