-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathprocessingUserPage.php
More file actions
96 lines (91 loc) · 4.17 KB
/
processingUserPage.php
File metadata and controls
96 lines (91 loc) · 4.17 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
<?php
session_start();
require 'utils.inc.php';
start_page('processinguserpage');
$CurrentLoginUserPage = $_SESSION['CurrentUserName'];
$CurrentPasswordUserPage = $_POST['CurrentPasswordUserPage'];
$NewMailUserPage = $_POST['NewMailUserPage'];
$NewLoginUserPage = $_POST['NewLoginUserPage'];
$NewPasswordUserPage = $_POST['NewPasswordUserPage'];
$action = $_POST['Change'];
if($action == 'Changer de login'){
$dbLink = mysqli_connect('mysql-e-eventio.alwaysdata.net', 'e-eventio_login', 'php123456$') or die('Erreur de connexion au serveur : ' . mysqli_connect_error());
mysqli_select_db($dbLink , 'e-eventio_sql') or die('Erreur dans la sélection de la base : ' . mysqli_error($dbLink));
$query = "SELECT * FROM users WHERE login = '" . $CurrentLoginUserPage . "' AND passwd = '" . $CurrentPasswordUserPage . "'";
if(!($dbResult = mysqli_query($dbLink, $query)))
{
echo 'Erreur de requête<br/>';
echo 'Erreur : ' . mysqli_error($dbLink) . '<br/>';
echo 'Requête : ' . $query . '<br/>';
exit();
}
elseif($dbRow = mysqli_fetch_row($dbResult))
{
$CurrentUserID = $dbRow[0];
$_SESSION['UserIDPage'] = $CurrentUserID;
$query2 = "UPDATE users SET login = '" . $NewLoginUserPage . "' where id_user = '" . $CurrentUserID . "'";
mysqli_query($dbLink, $query2);
$_SESSION['userPage'] = 'Login modifié en : ' . $NewLoginUserPage;
$_SESSION['CurrentUserName'] = $NewLoginUserPage;
header('Location: userPage.php');
}
else
{
$_SESSION['userPage'] = 'Mauvais identifiant ou mot de passe';
header('Location: userPage.php');
}
}
elseif($action == 'Changer de mail'){
$dbLink = mysqli_connect('mysql-e-eventio.alwaysdata.net', 'e-eventio_login', 'php123456$') or die('Erreur de connexion au serveur : ' . mysqli_connect_error());
mysqli_select_db($dbLink , 'e-eventio_sql') or die('Erreur dans la sélection de la base : ' . mysqli_error($dbLink));
$query = "SELECT * FROM users WHERE login = '" . $CurrentLoginUserPage . "' AND passwd = '" . $CurrentPasswordUserPage . "'";
if(!($dbResult = mysqli_query($dbLink, $query)))
{
echo 'Erreur de requête<br/>';
echo 'Erreur : ' . mysqli_error($dbLink) . '<br/>';
echo 'Requête : ' . $query . '<br/>';
exit();
}
elseif($dbRow = mysqli_fetch_row($dbResult))
{
$CurrentUserID = $dbRow[0];
$_SESSION['UserIDPage'] = $CurrentUserID;
$query2 = "UPDATE users SET email = '" . $NewMailUserPage . "' where id_user = '" . $CurrentUserID . "'";
mysqli_query($dbLink, $query2);
$_SESSION['userPage'] = 'Mail modifié en : ' . $NewMailUserPage;
header('Location: userPage.php');
}
else
{
$_SESSION['userPage'] = 'Mauvais identifiant ou mot de passe';
header('Location: userPage.php');
}
}
elseif($action == 'Changer de mot de passe'){
$dbLink = mysqli_connect('mysql-e-eventio.alwaysdata.net', 'e-eventio_login', 'php123456$') or die('Erreur de connexion au serveur : ' . mysqli_connect_error());
mysqli_select_db($dbLink , 'e-eventio_sql') or die('Erreur dans la sélection de la base : ' . mysqli_error($dbLink));
$query = "SELECT * FROM users WHERE login = '" . $CurrentLoginUserPage . "' AND passwd = '" . $CurrentPasswordUserPage . "'";
if(!($dbResult = mysqli_query($dbLink, $query)))
{
echo 'Erreur de requête<br/>';
echo 'Erreur : ' . mysqli_error($dbLink) . '<br/>';
echo 'Requête : ' . $query . '<br/>';
exit();
}
elseif($dbRow = mysqli_fetch_row($dbResult))
{
$CurrentUserID = $dbRow[0];
$_SESSION['UserIDPage'] = $CurrentUserID;
$query2 = "UPDATE users SET passwd = '" . $NewPasswordUserPage . "' where id_user = '" . $CurrentUserID . "'";
mysqli_query($dbLink, $query2);
$_SESSION['userPage'] = 'MDP modifié en : ' . $NewPasswordUserPage;
header('Location: userPage.php');
}
else
{
$_SESSION['userPage'] = 'Mauvais identifiant ou mot de passe';
header('Location: userPage.php');
}
}
end_page();
?>