if ($_GET['a'] == "login") { $lname = $_POST['lname']; $lpass = md5($_POST['lpass']); $q = mysql_query("SELECT * FROM techs WHERE tloginname = '$lname'"); $result = mysql_fetch_array($q); if ($lpass == $result['tloginpass']) { $_SESSION['tid'] = $result['tid']; $_SESSION['loggedin'] = "1"; $_SESSION['tname'] = $result['tfname'] . " " . $result['tlname']; $lin = 1; $template->assign('name', $_SESSION['tname']); $template->assign('id', $_SESSION['tid']); $template->assign('func', "in"); $template->display('login.tpl'); } else { echo "login failed"; }
if (isset($_GET['p'])) { include 'pages/' . $_GET['p'] . '.php'; } else { include 'pages/index.php'; }
function gettech($tid) { if ($result = mysql_query("SELECT * FROM techs WHERE tid = '$tid'")) { $tech = mysql_fetch_array($result); return $tech; } else { echo mysql_error(); } }
http://localhost/ktp/pages/tech/changepassword.php