<html>
<?php
session_start();
if(isset($_SESSION['loggedin']) && $_SESSION['loggedin'] == 1)
echo "<meta http-equiv=\"REFRESH\" content=\"0;url=member.php\">";
else {
echo "
<table width=\"300px\" border=\"0px\">
<form action=\"login.php\" method=\"post\">
<tr><td>Name:</td> <td><input type=\"text\" name=\"username\" /></td></tr>
<tr><td>Password:</td> <td><input type=\"password\" name=\"password\" /></td></tr>
<tr><td><input type=\"hidden\" name=\"submitted\" value=\"1\"></td>
<td><input type=\"submit\" value=\"Login\" /></td></tr>
</form>
</table>";
}
?>
</html>
<?php
include('include/dbcon.inc.php'
;
include('func/postget.php'
;
include('AES/AES.class.php'
;
include('AES/AES.settings.php'
;
$aes = new AES($aesKey);
session_start();
$username = postData('username'
;
$password = $aes->encrypt(postData('password'
);
$_SESSION['submitted'] = postData('submitted'
;
if ($_SESSION['submitted'] == 0)
echo "<meta http-equiv=\"REFRESH\" content=\"0;url=index.php\">";
else {
$result = mysql_query("SELECT * FROM users
WHERE username='$username'");
while ($row = mysql_fetch_array($result)) {
if ($username == $row['username'] && $password == $row['password']) {
$_SESSION['username'] = $username;
$_SESSION['password'] = $password;
$_SESSION['userid'] = $row['ID'];
$_SESSION['loggedin'] = 1;
}
}
}
?>
<html>
<meta http-equiv="REFRESH" content="0;url=member.php">
</html>
<html>
<?php
session_start();
if(isset($_SESSION['loggedin']) && $_SESSION['loggedin'] == 1){
echo "
<form action=\"action.php\" method=\"post\">
<select name=\"action\">
<option value=\"addList\" selected>Add to list</option>
<option value=\"viewList\">View Whitelist</option>
<option value=\"deleteList\">
elete Whitelist</option>
<option value=\"logout\">Logout</option>
</select>
<input type=\"submit\" value=\"Send\" />
<br />
<input type=\"text\" name=\"username\" value=\"\" /> <b>Use if adding to whitelist</b>
</form> ";
} else if($_SESSION['submitted'] == 1)
echo "Left at least one field blank";
else if ($_SESSION['submitted'] == 0)
echo "<meta http-equiv=\"REFRESH\" content=\"0;url=index.php\">";
else
echo "You don't have permissions to view this page";
?>
<br />
<a href="../TEST/index.php">Back</a>
</html>
<?php
include('func/postget.php'
;
session_start();
switch(postData('action'
) {
case "addList":
$username = postData('username'
;
if($username == "")
echo "No input";
else {
$file=fopen("whitelist.txt","a");
fwrite($file, $username . "\n");
echo "Member " . $username . " added to the whitelist!";
}
break;
case "viewList":
echo "<iframe width=\"300px\" height=\"500px\" src=\"whitelist.txt\"></iframe>";
break;
case "deleteList":
$myFile = "whitelist.txt";
unlink($myFile);
echo $myFile . " deleted!";
break;
case "logout":
if(isset($_SESSION['loggedin']) && $_SESSION['loggedin'] == 1) {
unset($_SESSION['username']);
unset($_SESSION['password']);
unset($_SESSION['loggedin']);
unset($_SESSION['submitted']);
session_destroy();
session_start();
$_SESSION['submitted'] = 0;
echo "Logged out!";
} else {
echo "Not logged in!";
}
break;
}
?>
<html>
<br />
<a href="../TEST/member.php">Back</a>
<?php
include('settings/db.php'
;
$con = mysql_connect($dbHostname, $dbUsername, $dbPassword);
if (!$con) {
die('Could not connect: ' . mysql_error());
}
mysql_select_db($dbDatabase, $con);
?>
<?php
//Server hostname (usually localhost)
$dbHostname = "localhost";
//MySQL username
$dbUsername = "root";
//MySQL password
$dbPassword = "";
//Database name
$dbDatabase = "login";
?>
<?php
function getData($var, $maxLength=99) {
$value = NULL;
if (isset($_GET[$var])) {
$value = trim(htmlentities($_GET[$var], ENT_QUOTES));
if (strlen($value) > $maxLength) {
$value = substr($value, 0, $maxLength);
}
}
return $value;
}
function postData($var, $maxLength=99) {
$value = NULL;
if (isset($_POST[$var])) {
$value = trim(htmlentities($_POST[$var], ENT_QUOTES));
if (strlen($value)>$maxLength) {
$value = substr($value, 0, $maxLength);
}
}
return $value;
}
?>
Copyright © 2026, NextGenUpdate.
All Rights Reserved.