TEMAT DO ZAMKNIĘCIA!!
Dzięki phpion i kaem sobie poradziłem.
<?php $password = $array['haslo']; if(sha1($old) == $password) ... ?>
<?php function usun($data){ } } $message .= '<font class="blad">Nie podałeś loginu</font><br />'; $l = FALSE; }else{ $l = usun($_POST['login']); } $message .= '<font class="blad">Nie podałeś hasła</font><br />'; $h = FALSE; }else{ $h = usun($_POST['haslo']); } if ( $l && $h ){ $query = "SELECT username, access FROM user WHERE username='$l' AND haslo=password('$h')"; ?>
<?php $username = $_SESSION['username']; ?> <? if(!$_POST['posted']) { ?> <form action="index.php?show=changepass" method="post"> Old Password: <input type="password" name="old"><br/> New Password: <input type="password" name="new"><br/> <center><input type="submit" name="posted" value="Change Password"></center> </form> <? } else { $old = $_POST['old']; $new = $_POST['new']; $query = mysql_query("SELECT * FROM `user` WHERE(`user_id`='$username')") or die("Could not select account $username! ".mysql_error()); $password = $array['haslo']; $query = mysql_query("UPDATE `user` SET `haslo` = md5('$new') WHERE `user`.'$username' LIMIT 1") or die("Could not Change password! ".mysql_error()); } else { } } ?>
<?php ?>
<?php ?>
<?php $query = mysql_query("UPDATE `user` SET `haslo` = md5('$new') WHERE `username`='$username' LIMIT 1") or die("Could not Change password! ".mysql_error()); ?>