--- mainfile.php.OLD Thu Jun 13 18:20:03 2002 +++ mainfile.php Thu Jun 13 18:41:01 2002 @@ -2,7 +2,7 @@ # mainfile.php - all main functions for phpnuke (by fb) # $Id: mainfile.php,v 1.1 2002/06/03 22:02:50 pawal Exp $ -if (eregi("mainfile.php",$PHP_SELF)) { +if (eregi("mainfile\.php",$SCRIPT_NAME)) { header("Location: index.php"); die(); } @@ -27,6 +27,26 @@ $user = base64_decode($user); $cookie = explode(":", $user); return $cookie; +} + +function isRealUser($user) { + $userArray = cookiedecode($user); + $claimedUser = $userArray[1]; + $claimedPass = $userArray[2]; + + if (($claimedUser == '') and ($claimedPass == '')) + return false; # inte inloggad + + dbconnect(); + $result = mysql_query("SELECT COUNT(*) FROM users WHERE uname='".addslashes($claimedUser)."' AND pass='".addslashes($claimedPass)."'"); + $resultarray = mysql_fetch_array($result); + $resultcounter = $resultarray[0]; + mysql_free_result($result); + + if ($resultcounter == 1) + return true; # inloggad, inget skumt + + die('Ta din säng och gå, lame man!'); # Skumt! } function getusrinfo($user) {