Example #1
0
 function LoginToken($post)
 {
     $db = new DBase();
     $q = "SELECT * FROM `users` WHERE `email` = '" . $post['email'] . "' AND `pass` = '" . md5($post['pass']) . "' AND `token` <> ''";
     $result = $db->queryCount($q);
     if ($result != 0) {
         return 1;
     } else {
         return 0;
     }
 }
Example #2
0
<?php

// Importo la clase que me permite conectarme con la base
include "conexion.php";
// Variables por GET
$varPost = $_POST;
$base = new DBase();
// Insercion de un solo elemento, que puede ser encuesta, programa, pregunta o votos //
$tipoInsert = $varPost["tipo"];
switch ($tipoInsert) {
    case "programa":
        $nombre = $varPost["nombre"];
        $descripcion = $varPost["desc"];
        $cadenaInsertar = "Insert into programas (id, nombre, descripcion,Activo) values ( '','" . $nombre . "','" . $descripcion . "',1)";
        $cadenaValidar = "SELECT * FROM programas WHERE nombre='" . $nombre . "'";
        try {
            // Antes de insertar Valido
            $existe = $base->validarExistencia($cadenaValidar);
            if ($existe) {
                echo "{\"respuesta\":\"REPETIDO\"}";
            } else {
                $base->insertar($cadenaInsertar);
                echo "{\"respuesta\":\"OK\"}";
            }
        } catch (Exception $e) {
            echo "{\"respuesta\":\"ERROR\"}";
        }
        break;
    case "encuesta":
        $nombre = $varPost["nombre"];
        $descripcion = $varPost["desc"];
Example #3
0
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
session_start();
require_once '../uses_constants/initSite.php';
if (!isset($_SESSION['adminuser']) && !isset($_SESSION['adminpassword'])) {
    header('location: logout.php');
} else {
    $siteConstant->addFile('css', 'account.css');
    echo $siteConstant->getHead();
    echo $siteConstant->getMenu();
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    $userQuery = mysqli_query($dBase->getDbobj(), 'SELECT * FROM members');
    $adsQuery = mysqli_query($dBase->getDbobj(), 'SELECT * FROM ads WHERE IsActive=1');
    $pnd = $paid = $bal = 0;
    while ($userData = mysqli_fetch_assoc($userQuery)) {
        $pnd += $userData['unpaid'];
        $paid += $userData['paid'];
        $bal += $userData['balance'];
    }
    ?>

<div style="padding-top: 100px">
Example #4
0
 public function query($sql)
 {
     $sql = str_replace(self::TABLE_PREFIX, App::config('db_table_prefix'), $sql);
     return parent::query($sql);
 }
Example #5
0
SOFTWARE.
*/
?>

<?php 
session_start();
require_once '../uses_constants/initSite.php';
$siteConstant->addFile('css', 'account.css');
echo $siteConstant->getHead();
echo $siteConstant->getMenu();
if (isset($_SESSION['username']) && isset($_SESSION['password'])) {
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $done = false;
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    $siteQuery = mysqli_query($dBase->getDbobj(), 'SELECT minimumtowithdraw FROM siteinfo WHERE id=1');
    $siteData = mysqli_fetch_assoc($siteQuery);
    $userQuery = mysqli_query($dBase->getDbobj(), "SELECT balance,unpaid FROM members WHERE username=\"" . $_SESSION['username'] . "\"");
    if (mysqli_num_rows($userQuery)) {
        $userData = mysqli_fetch_assoc($userQuery);
    } else {
        die('User Not Found!');
    }
    //Handling Action POST call
    if (isset($_POST['request'])) {
        $unpaid = $userData['unpaid'] + $userData['balance'];
Example #6
0
SOFTWARE.
*/
?>

<?php 
session_start();
require_once '../uses_constants/initSite.php';
$siteConstant->addFile('css', 'account.css');
echo $siteConstant->getHead();
echo $siteConstant->getMenu();
if (isset($_SESSION['username']) && isset($_SESSION['password'])) {
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $done = false;
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    $userQuery = mysqli_query($dBase->getDbobj(), "SELECT passmd5 FROM members WHERE username=\"" . $_SESSION['username'] . "\"");
    if (mysqli_num_rows($userQuery)) {
        $userData = mysqli_fetch_assoc($userQuery);
    } else {
        die('User Not Found!');
    }
    //Handling Action POST call
    if (isset($_POST['submit'])) {
        if ($_POST['pass'] != $_POST['cpass'] || md5($_POST['oldpass']) != $userData['passmd5']) {
            $done = false;
        } else {
Example #7
0
File: gud.php Project: nhanv/ptc
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
session_start();
require_once '../uses_constants/initSite.php';
if (!isset($_SESSION['adminuser']) && !isset($_SESSION['adminpassword'])) {
    header('location: logout.php');
} else {
    $siteConstant->addFile('css', 'account.css');
    echo $siteConstant->getHead();
    echo $siteConstant->getMenu();
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    if (isset($_GET['user'])) {
        $found = false;
        $userQuery = mysqli_query($dBase->getDbobj(), 'SELECT * FROM members WHERE username="******"');
        $userData = mysqli_fetch_assoc($userQuery);
        if (mysqli_num_rows($userQuery)) {
            $found = true;
        }
    }
    ?>

<div style="padding-top: 100px">
Example #8
0
 public function validData()
 {
     if ($this->password != $this->cpassword) {
         $this->errors[] = 'Passwords does not match';
     }
     if ($this->country == "Country...") {
         $this->errors[] = 'You must select a valid country';
     }
     $db = new DatabaseConstants();
     $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
     $dBase->setDatabaseName($db->getDb());
     if (!$dBase->connectDatabase()) {
         die('SQL ERROR at db class vd fn');
     }
     $qry = "Select username FROM members WHERE username=\"" . $this->username . "\"";
     $res = mysqli_query($dBase->getDbobj(), $qry);
     if (mysqli_num_rows($res)) {
         $this->errors[] = 'Username Already Taken!';
     }
     $qry = "Select email FROM members WHERE email=\"" . $this->email . "\"";
     $res2 = mysqli_query($dBase->getDbobj(), $qry);
     if (mysqli_num_rows($res2)) {
         $this->errors[] = 'Email Address is Already registered!';
     }
     return count($this->errors) ? false : true;
 }
Example #9
0
The above copyright notice and this permission notice shall be included in all
copies or substantial portions of the Software.

THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
require_once 'class.DatabaseConstants.php';
require_once '../uses_classes/class.DBase.php';
require_once 'class.SiteConstant.inc';
$db = new DatabaseConstants();
//initiating databse class
$dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
$dBase->setDatabaseName($db->getDb());
if ($dBase->connectDatabase()) {
    $siteQuery = mysqli_query($dBase->getDbobj(), 'SELECT title,link,header FROM siteinfo WHERE id=1');
    $siteData = mysqli_fetch_assoc($siteQuery);
}
$dBase->closeDatabse($dBase->getDbobj());
//initiating SiteConstant class
$siteConstant = new SiteConstant($siteData['title'], $siteData['link'], $siteData['header']);
//adding external files
//css files
$siteConstant->addFile('css', 'design.css');
//jquery files
$siteConstant->addFile('jq', 'jquery.js');
$siteConstant->addFile('jq', 'menu.js');
Example #10
0
File: refs.php Project: nhanv/ptc
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
?>

<?php 
session_start();
require_once '../uses_constants/initSite.php';
$siteConstant->addFile('css', 'account.css');
echo $siteConstant->getHead();
echo $siteConstant->getMenu();
if (isset($_SESSION['username']) && isset($_SESSION['password'])) {
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    $userQuery = mysqli_query($dBase->getDbobj(), "SELECT username,selfclick,balance,paid,unpaid FROM members WHERE referredby=\"" . $_SESSION['username'] . "\"");
    if (mysqli_num_rows($userQuery)) {
        //continue
    }
    ?>

<div style="padding-top: 100px">
    <center>
        <legend>
            Account Detail
        </legend>
Example #11
0
File: esinfo.php Project: nhanv/ptc
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
session_start();
require_once '../uses_constants/initSite.php';
if (!isset($_SESSION['adminuser']) && !isset($_SESSION['adminpassword'])) {
    header('location: logout.php');
} else {
    $siteConstant->addFile('css', 'account.css');
    echo $siteConstant->getHead();
    echo $siteConstant->getMenu();
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $done = false;
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    if (isset($_POST['submit'])) {
        $qry = "UPDATE siteinfo SET title='" . $_POST['title'] . "',link='" . $_POST['link'] . "',header='" . $_POST['header'] . "',payment1='" . $_POST['p1'] . "',payment2='" . $_POST['p2'] . "',payment3='" . $_POST['p3'] . "',minimumtowithdraw='" . $_POST['minimum'] . "',adminuser='******'auser'] . "',adminpass='******'apass'] . "' WHERE id=1";
        mysqli_query($dBase->getDbobj(), $qry);
        if (!mysqli_affected_rows($dBase->getDbobj()) < 1) {
            $done = true;
        }
    }
    $siteQuery = mysqli_query($dBase->getDbobj(), 'SELECT * FROM siteinfo WHERE id=1');
    $siteData = mysqli_fetch_assoc($siteQuery);
    ?>
<?php

if (!array_key_exists('id', $_GET)) {
    die("Couldn't find safety check ID");
}
$safetyCheckId = $_GET['id'];
require_once 'API/DBase.php';
$db = new DBase();
$sql = "select c.firstname, c.lastname, c.address, c.city, c.state, c.postcode, cast(sc.created as date) as created, ca.make, ca.registration, s.odo from safetycheck sc INNER JOIN service s ON (sc.id = s.safetyCheck) INNER JOIN customer c ON (s.owner = c.id) INNER JOIN car ca ON (s.car = ca.id) where sc.id = " . $db->escape($safetyCheckId);
$check = $db->fetchOne($sql);
$check['created'] = DateTime::createFromFormat('Y-m-d', $check['created']);
$check['created'] = $check['created']->format("d/m/Y");
?>
<!DOCTYPE html>
<html lang="en">
  <head>
    <meta charset="utf-8">
    <title>Customer - Sharpie's Auto Services</title>
    <meta name="description" content="">
    <meta name="author" content="">
    <meta name="viewport" content="width=device-width, initial-scale=1">
    <link rel="stylesheet" href="css/normalize.css">
    <link rel="stylesheet" media="all" href="css/safetycheck.css">
    <link rel="icon" type="image/png" href="images/favicon.png">
  </head>
  <body>
    <table>
      <tr>
        <td class="logo">
          <img src="images/logo.png" />
          <div class="safetyCheckNumber">
Example #13
0
File: view.php Project: nhanv/ptc
*/
?>

<?php 
session_start();
$url = $_SERVER['REQUEST_URI'];
header("Refresh: 2; URL={$url}");
require_once '../uses_constants/initSite.php';
$siteConstant->addFile('css', 'account.css');
echo $siteConstant->getHead();
echo $siteConstant->getMenu();
require_once '../uses_constants/class.DatabaseConstants.php';
require_once '../uses_classes/class.DBase.php';
$isAdAvailable = false;
$db = new DatabaseConstants();
$dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
$dBase->setDatabaseName($db->getDb());
if (!$dBase->connectDatabase()) {
    die('SQL ERROR at db class vd fn');
}
$adsQuery = mysqli_query($dBase->getDbobj(), "SELECT * FROM ads WHERE isActive=1 AND Views < ViewLimit");
if (mysqli_num_rows($adsQuery)) {
    $isAdAvailable = true;
}
if (isset($_SESSION['username']) && isset($_SESSION['password'])) {
    $userQuery = mysqli_query($dBase->getDbobj(), "SELECT * FROM members WHERE username=\"" . $_SESSION['username'] . "\"");
    if (mysqli_num_rows($userQuery)) {
        $userData = mysqli_fetch_assoc($userQuery);
    } else {
        die('User Not Found!');
    }
Example #14
0
File: addad.php Project: nhanv/ptc
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
session_start();
require_once '../uses_constants/initSite.php';
if (!isset($_SESSION['adminuser']) && !isset($_SESSION['adminpassword'])) {
    header('location: logout.php');
} else {
    $siteConstant->addFile('css', 'account.css');
    echo $siteConstant->getHead();
    echo $siteConstant->getMenu();
    $done = false;
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    //handling submit
    if (isset($_POST['submit'])) {
        $adquery = 'INSERT INTO ads (Title,Link,ViewLimit,Pays) VALUES ("' . $_POST['title'] . '","' . $_POST['link'] . '","' . $_POST['views'] . '","' . $_POST['pays'] . '")';
        mysqli_query($dBase->getDbobj(), $adquery);
        if (!mysqli_affected_rows($dBase->getDbobj()) < 1) {
            $done = true;
        }
        $id = 0;
        $qryE = mysqli_query($dBase->getDbobj(), 'SELECT Id FROM ads');
        while ($dataE = mysqli_fetch_assoc($qryE)) {
            $id = $dataE['Id'];
 /**
  * 根据主键删除
  *
  * @param mixed $primaryKey
  * @param int $limit
  * @return int
  */
 public function delByPrk($primaryKey, $limit = 1)
 {
     return parent::delByPrk($this->trueTableName, $primaryKey, $limit);
 }
Example #16
0
File: index.php Project: nhanv/ptc
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
session_start();
require_once '../uses_constants/initSite.php';
$siteConstant->addFile('css', 'account.css');
echo $siteConstant->getHead();
echo $siteConstant->getMenu();
require_once '../uses_constants/class.DatabaseConstants.php';
require_once '../uses_classes/class.DBase.php';
$db = new DatabaseConstants();
$dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
$dBase->setDatabaseName($db->getDb());
if (!$dBase->connectDatabase()) {
    die('SQL ERROR at db class vd fn');
}
$siteQuery = mysqli_query($dBase->getDbobj(), 'SELECT * FROM siteinfo WHERE id=1');
$siteData = mysqli_fetch_assoc($siteQuery);
if (isset($_GET['ref'])) {
    $_SESSION['ref'] = $_GET['ref'];
}
?>

<div style="padding-top: 100px">
    <center>
        <p><span class="idx-title" style="font-size: 48px"> GET PAID </span></p>
        <p><span class="idx-title" style="color:#eee;">EVERY <span style="font:bold 38px Verdana,Arial,Helvetica,sans-serif;">30</span> SECONDS!</span></p>
<?php

if (!array_key_exists('id', $_GET)) {
    die("Couldn't find invoice ID");
}
$invoiceId = $_GET['id'];
$close = array_key_exists('close', $_GET) ? (bool) $_GET['close'] : true;
require_once 'API/DBase.php';
$db = new DBase();
$sql = "SELECT CAST(inv.created AS Date) as 'invoiceDate', inv.id as 'invoiceId', inv.bankDetails, cust.firstname, cust.lastname, cust.address, cust.city, cust.state, cust.postcode, c.make, c.model, c.registration FROM invoice inv INNER JOIN service serv ON (serv.id = inv.service) INNER JOIN customer cust ON (cust.id = serv.owner) INNER JOIN car c ON (serv.car = c.id) WHERE inv.id = " . $db->escape($invoiceId);
$invoice = $db->fetchOne($sql);
$invoice['invoiceDate'] = DateTime::createFromFormat('Y-m-d', $invoice['invoiceDate']);
$invoice['invoiceDate'] = $invoice['invoiceDate']->format("j F Y");
$sql = "SELECT det.*, (det.cost * det.quantity) AS total FROM detail det WHERE det.invoice = " . $db->escape($invoiceId);
$invoiceDetails = $db->fetchAll($sql);
?>
<!DOCTYPE html>
<html lang="en">
  <head>
    <meta charset="utf-8">
    <title>Invoice - Sharpie's Auto Services</title>
    <meta name="description" content="">
    <meta name="author" content="">
    <meta name="viewport" content="width=device-width, initial-scale=1">
    <link rel="stylesheet" href="css/normalize.css">
    <link rel="stylesheet" media="all" href="css/invoice.css">
    <link rel="icon" type="image/png" href="images/favicon.png">
  </head>
  <body>
    <table>
      <tr>
Example #18
0
 public function verifyDatabase()
 {
     $db = new DatabaseConstants();
     $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
     $dBase->setDatabaseName($db->getDb());
     if (!$dBase->connectDatabase()) {
         die('SQL ERROR at db class vd fn');
     }
     $loginQuery = mysqli_query($dBase->getDbobj(), "SELECT id FROM members WHERE username=\"" . $this->_username . "\" AND passmd5=\"" . $this->_passmd5 . "\"");
     if (mysqli_num_rows($loginQuery)) {
         $loginData = mysqli_fetch_assoc($loginQuery);
         $this->_id = $loginData['id'];
         return true;
     } else {
         return false;
     }
     //        while($loginData = mysqli_fetch_assoc($loginQuery)) {
     //            if($loginData['username'] == $this->_username){
     //                echo 'gothere<br>';
     //                return true;
     //            }
     //        }
     //       return false;
 }
Example #19
0
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
SOFTWARE.
*/
session_start();
require_once '../uses_constants/initSite.php';
if (isset($_SESSION['username']) && isset($_SESSION['password'])) {
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $prob = false;
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    if (isset($_POST['adid'])) {
        $adid = $_POST['adid'];
        $adsQuery = mysqli_query($dBase->getDbobj(), 'SELECT * FROM ads WHERE Id=' . $adid);
        if (mysqli_num_rows($adsQuery)) {
            $adsData = mysqli_fetch_assoc($adsQuery);
            $paylast = $pays = $adsData['Pays'];
            $view = $adsData['Views'];
            $view++;
            if ($view >= $adsData['ViewLimit']) {
                mysqli_query($dBase->getDbobj(), 'UPDATE ads SET IsActive=0 WHERE Id="' . $adid . '"');
                mysqli_query($dBase->getDbobj(), 'UPDATE ads SET Views=' . $view . ' WHERE Id="' . $adid . '"');
Example #20
0
include '../uses_classes/class.Login.php';
$login = new Login();
if ($login->isLoggedIn()) {
    $siteConstant->loggedIn = true;
    $siteConstant->addFile('css', 'account.css');
    echo $siteConstant->getHead();
    echo $siteConstant->getMenu();
} else {
    include 'logout.php';
    header('location: index.php');
}
if ($siteConstant->loggedIn) {
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    $siteQuery = mysqli_query($dBase->getDbobj(), 'SELECT title,link,header FROM siteinfo WHERE id=1');
    $siteData = mysqli_fetch_assoc($siteQuery);
    $userQuery = mysqli_query($dBase->getDbobj(), "SELECT * FROM members WHERE username=\"" . $_SESSION['username'] . "\"");
    if (mysqli_num_rows($userQuery)) {
        $userData = mysqli_fetch_assoc($userQuery);
    } else {
        die('User Not Found!');
    }
    ?>

<div style="padding-top: 100px">
Example #21
0
File: forgot.php Project: nhanv/ptc
session_start();
require_once '../uses_constants/initSite.php';
$siteConstant->addFile('css', 'form.css');
$siteConstant->addFile('css', 'font-awesome.css');
echo $siteConstant->getHead();
echo $siteConstant->getMenu();
$msg = '';
?>

<?php 
if (isset($_POST['submit'])) {
    require_once '../uses_constants/class.DatabaseConstants.php';
    require_once '../uses_classes/class.DBase.php';
    $valid = false;
    $db = new DatabaseConstants();
    $dBase = new DBase($db->getHost(), $db->getUser(), $db->getPass());
    $dBase->setDatabaseName($db->getDb());
    if (!$dBase->connectDatabase()) {
        die('SQL ERROR at db class vd fn');
    }
    $userQuery = mysqli_query($dBase->getDbobj(), "SELECT password,email FROM members WHERE email=\"" . $_POST['email'] . "\"");
    if (mysqli_num_rows($userQuery)) {
        $userData = mysqli_fetch_assoc($userQuery);
        $admin_mail = '*****@*****.**';
        $to = $userData['email'];
        $subject = 'Your Password';
        $message = 'Your password is : ' . $userData['password'];
        $headers = 'From: ' . $admin_mail . "\r\n" . 'Reply-To: ' . $admin_mail . "\r\n" . 'X-Mailer: PHP/' . phpversion();
        if (mail($to, $subject, $message, $headers)) {
            $valid = true;
            $msg = 'Password has been sent to your Email Address';