From 64ea5d3f68c70a51153d8288d127ebd5cacf004e Mon Sep 17 00:00:00 2001 From: Joey Lai Date: Thu, 19 Jan 2017 15:55:28 +0100 Subject: [PATCH] Functions with validating --- website/mysql_config.xml | 7 -- website/public/login.php | 8 +-- website/public/register.php | 124 +++----------------------------- website/queries/checkInput.php | 95 ++++++++++++++++++++++++ website/views/login-view.php | 2 +- website/views/register-view.php | 4 +- 6 files changed, 113 insertions(+), 127 deletions(-) delete mode 100644 website/mysql_config.xml create mode 100644 website/queries/checkInput.php diff --git a/website/mysql_config.xml b/website/mysql_config.xml deleted file mode 100644 index de2d929..0000000 --- a/website/mysql_config.xml +++ /dev/null @@ -1,7 +0,0 @@ - - - localhost - myhyvesbookplus - mhbp - qdtboXhCHJyL2szC - \ No newline at end of file diff --git a/website/public/login.php b/website/public/login.php index f889f2f..d8eb62a 100644 --- a/website/public/login.php +++ b/website/public/login.php @@ -15,16 +15,16 @@ // Trying to login if ($_SERVER["REQUEST_METHOD"] == "POST") { - $uname=strtolower($_POST["uname"]); // Empty username or password field if (empty($_POST["uname"]) || empty($_POST["psw"])) { $loginErr = "Gebruikersnaam of wachtwoord is niet ingevuld"; } else { - $psw=$_POST["psw"]; - $hash=getUser()["password"]; - $userid=getUser()["userID"]; + $uname = strtolower(test_input($_POST["uname"])); + $psw = test_input($_POST["psw"]); + $hash = getUser()["password"]; + $userid = getUser()["userID"]; // If there's an account, go to the profile page if(password_verify($psw, $hash)) { diff --git a/website/public/register.php b/website/public/register.php index c454d66..66d1454 100644 --- a/website/public/register.php +++ b/website/public/register.php @@ -4,7 +4,7 @@ include("../views/login_head.php"); require_once("../queries/connect.php"); include_once("../queries/register.php"); - + include_once("../queries/checkInput.php"); ?> diff --git a/website/queries/checkInput.php b/website/queries/checkInput.php new file mode 100644 index 0000000..d48e4e0 --- /dev/null +++ b/website/queries/checkInput.php @@ -0,0 +1,95 @@ + diff --git a/website/views/login-view.php b/website/views/login-view.php index 9214a89..33fa7e9 100644 --- a/website/views/login-view.php +++ b/website/views/login-view.php @@ -46,6 +46,6 @@
- Registreer een account + Registreer een account
diff --git a/website/views/register-view.php b/website/views/register-view.php index f2b9257..b95dd81 100644 --- a/website/views/register-view.php +++ b/website/views/register-view.php @@ -108,7 +108,7 @@
-