Example #1
0
 public function check_user()
 {
     $db = new Database();
     $session = new Session();
     $this->email = mysql_real_escape_string($this->email, $db->getDBConnection());
     $this->password = mysql_real_escape_string($this->password, $db->getDBConnection());
     $result = $db->runQuery("SELECT * FROM userdetail WHERE username='******' and password='******' and Active=1");
     if ($db->checkRows($result) > 0) {
         $session->set_session('email', $this->email);
         $details = $db->fetchArray($result);
         $session->set_session('user_type', $details['TypeOfUser']);
         $randomsession = uniqid(ssn);
         $session->set_session('sessionid', $randomsession);
         $insertArray['SessionID'] = $randomsession;
         $insertArray['UserID'] = $details['UserID'];
         $session->set_session('userid', $details['UserID']);
         $rs = $db->saveRecords($insertArray, "session");
         return true;
     } else {
         return false;
     }
 }
<?php

include 'classes/Database.php';
$db = new Database();
$db->getDBConnection();
$mail = $_REQUEST['mail'];
$check = mysql_query("select * from userdetail where UserName='******'");
if (mysql_num_rows($check) > 0) {
    $check_res = mysql_fetch_assoc($check);
    $sec_qust_res = mysql_query("select * from securityquestion where UserID ='{$check_res['UserID']}'");
    if (mysql_num_rows($sec_qust_res) < 3) {
        //get from address from main_settings table
        $main_settings_qry = "SELECT * FROM main_settings LIMIT 1";
        $main_settings_exe_qry = mysql_query($main_settings_qry);
        $main_settings_result = mysql_fetch_assoc($main_settings_exe_qry);
        $to = $check_res['UserName'];
        $subject = "Your Accurity Valuation login credentials.";
        $txt = "Dear " . $check_res['Name'] . ",<br/><br/>\n\n\t\tTo login use below credentials.<br/><br/>\n\n\t\tUsername : "******" <br/>\n\t\tPassword : "******"<br/>\n\n\t\t<br/>\n\t\tRegards,\n\t\t<br/>\n\t\tAccurity \n\t\t";
        $headers = "From: " . $main_settings_result['from_email'];
        $res = mail($to, $subject, $txt, $headers);
        echo "noquestions";
        //echo '<br>Subject : '.$subject;
        //echo '<br>From :'.$main_settings_result['from_email'];
        //echo '<br>To :'.$to;
        //echo '<br>Body :'.'<br>'.$txt;exit;
    }
} else {
    echo 'This e-mail id is not registered.<br/><br/>';
}