<?php ob_start(); ?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN" "http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd"> <?php include "functions.inc.php"; include "user_settings.inc.php"; if (!isset($_SESSION["admin_rights"]) || $_SESSION["admin_rights"] < 1) { header("Location: zombie.php?ERROR_CODE=3"); } $con = connect_and_select($GLOBALS["db_name"]); ?> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="html/xml; charset=ISO-8859-1"/> <meta name="author" content="" /> <meta name="description" content="" /> <meta name="keywords" content="" /> <title>Blog - ZombieCMS</title> <script type="text/javascript" src="lib/js/prototype.js"></script> <script type="text/javascript" src="lib/js/scriptaculous.js?load=effects,builder"></script> <script type="text/javascript" src="lib/js/rounded_corners_lite.inc.js"></script> <script type="text/javascript" src="lib/js/scripts.js"></script> <link rel="shortcut icon" href="images/favicon.ico" /> <link rel="stylesheet" type="text/css" media="screen" href="lib/css/<?php echo $GLOBALS["theme"]; ?> /divs.css" /> <link rel="stylesheet" type="text/css" media="screen" href="lib/css/<?php echo $GLOBALS["theme"];
$banned = false; if (mysql_num_rows($ulist) == 1) { $ulist = mysql_fetch_array($ulist); if (Root::is_banned($ulist["id"])) { $banned = true; } else { $_SESSION["id"] = $ulist["id"]; $_SESSION["admin_rights"] = $ulist['rights']; $_SESSION["admin_user"] = $ulist["name"]; $_SESSION["logged"] = true; $logged = true; add_to_log($user, "Logged in"); } } mysql_close($con); if ($banned) { header("Location: index.php?ERROR_CODE=16"); } else { if (!$logged) { header("Location: index.php?ERROR_CODE=2"); } else { header("Location: zombie.php"); } } } else { $con = connect_and_select($GLOBALS['db_name']); add_to_log($_SESSION["admin_user"], "Logged out"); mysql_close($con); session_destroy(); header("Location: index.php"); }
<form method="post" action="log.php?dir=in" enctype="plain/text"> <p> <input type="text" name="user" id="user" value="Username"/> <input type="password" name="pwd" id="pwd" value="Password"/> </p> <p style="width: 60%"> <?php if (isset($_GET['ERROR_CODE'])) { $c = $_GET['ERROR_CODE']; echo "<span style=\"color: #f00; font-weight: 700;\">Error: ", $GLOBALS['errors'][$c], "</span>"; } else { if (isset($_GET['SUCCESS_CODE'])) { $c = $_GET["SUCCESS_CODE"]; echo "<span style=\"color: #21a713; font-weight: 700;\">Success: ", $GLOBALS['success'][$c], "</span>"; } else { if (!connect_and_select($GLOBALS['db_name'])) { ?> It looks like you don't have zombieCMS installed, take a chance, <a href="engine.php?action=install">install it now</a>. <?php } } } ?> </p> <p><img src="images/btn_right.png" class="btn_right"/><input type="submit" value="Ghhrrf, brains!" class="btn"/></p> </form> </div> </div> </body> </html>