login.php
<?php
ob_start();
session_start();
require("dbconnect.php");
if($_COOKIE['id'] === TRUE) {
echo("Welcome back, ".$login['username']." - <a href='./?id=editprofile'>User CP</a> - ");
echo("<a href='./?id=logout'>Log Out</a>");
}
else {
if($_POST['submit']) {
$user = $_POST['user'];
$pass = md5($_POST['pass']);
$log = mysql_query("SELECT * FROM `users` WHERE `username` = '$user'") or die(mysql_error());
$login = mysql_fetch_array($log);
if($pass === $login['password']) {
setcookie("id", $login['id'],time()+(60*60*24*7), "/", "");
setcookie("pass", $login['password'],time()+(60*60*24*7), "/", "");
echo ("<meta http-equiv='Refresh' content='2; URL=./' />
<img src='images/loading.gif' alt='loading' /> Thank You! You will be redirected to the homepage");
}
else {
echo("Wrong username or password.");
}
}
else { ?>
<form method='POST'>
Username: <input type='text' name='user'>
Password: <input type='password' name='pass'>
<input type='submit' name='submit' value='Login'>
<a href='./?id=register'>Register Here</a>
</form>
<?php
}
}
?>
Any help would be greatly appreciated.
