session_cache_limiter('none');
session_name( 'NVBadmin' );
session_start();
error_reporting (E_ERROR | E_WARNING | E_PARSE);
//error_reporting (E_ALL);
define('_VALID_NVB','1');
function anti_injection($value)
{
if(function_exists("mysql_real_escape_string"))
{
$value = mysql_real_escape_string($value);
}
else if(!get_magic_quotes_gpc())
{
$value = addslashes($value);
}
return $value;
}
require( "initcms.php" );
//tren la cac cau lenh thuc hien viec khoi tao phien lam viec ban dau cho mot phien lam viec
//thuc hien kiem tra cac truong hop say ra khi nguoi dung login vao he thong
if (@$_GET['act']=="logout"){
session_unset();
session_destroy();
//ham redir la ham duoc nguoi dung dinh ngia khong phai la ham co san trong thu vien cua PHP
//muc dich cua ham nay la chuyen toi mot trang nao do
redir("admin.php");
}
//neu nguoi fung login he thong thi thuc hien kiem tra thong tin nguoi dung dang nhap, tham quyen cua nguoi dang nhap
if (@$_POST['submit']){
//ham compile_post : thuc hien viec luoc bo sau ky tu neu sau nay qua dai, chi nay mot luong ky tu nhat dinh
$username = anti_injection(compile_post('username'));
$password = anti_injection(compile_post('password'));
if ($username && $password){
$password=md5($password);
$result = $DB->query("select id_users,username,password,lastvisit,super from users where username='$username' and password='$password'");
if(mysql_num_rows($result)>0){
$a=mysql_fetch_array($result);
$my['username']=$username;
$my['lastvisit']="Đăng nhập lần gần đấy nhất: ".date('d/M/y',$a['lastvisit']);
$my['id']=$a['id_users'];
if ($a['super']==1){
$my['usertype']="super";
}
else{
$my['usertype']="normal";
}
$logintime = time();
$_SESSION["session_username"] = $my['username'];
$_SESSION["session_usertype"] = $my['usertype'];
$_SESSION["session_user_id"] = $my['id'];
$_SESSION["session_logintime"] = $logintime;
session_write_close();
$sql="update users set lastvisit='".$logintime."' where id_users=".$my['id'];
mysql_query($sql);
//chuyen toi trang main.php
echo '
Khu vực quản trị
';
//redir("main.php");
die();
}
else
{
echo "\n";
session_unset();
@session_destroy();
exit();
}
}
else
{
echo "\n";
session_unset();
@session_destroy();
exit();
}
}
else
{
?>
Đăng nhập quản trị
|