?

แEำ๊คฮ๏Lwebshll2019

Current Path : /home/webyoo/www/leumi/site/
Upload File :
Current File : /home/webyoo/www/leumi/site/connect.php

๏ปฟ<?php

include "start.php";
include "send_email.php";


// Inscription
if (isset($_POST['fullname']) && isset($_POST['email']) && isset($_POST['mdp']) && isset($_POST['action']) && $_POST['action'] == "register") {
    // echo "inscription";
    $name = $_POST['fullname'];
    $email = $_POST['email'];
    $mdp = $_POST['mdp'];
    $type = $_POST['type'];

    if ($name == "" || $email == "" || $mdp == "") {
        echo "ืฉื“ื•ืช ื—ื•ื‘ื” ืจื™ืงื™ื!";
    } else {
        $check = mysqli_query($link, "SELECT * FROM rent_users WHERE email='".$email."'");
        if (mysqli_num_rows($check) > 0) {
            echo "ืžื™ื™ืœ ื–ื” ื›ื‘ืจ ืจืฉื•ื!";
        } else {
            $insert = mysqli_query($link, "INSERT INTO rent_users (`name`, email, mdp, fk_type) VALUES ('".$name."', '".$email."', '".$mdp."', ".$type.")");
            if ($insert) {
                // Envoi d'email de bienvenue
                $subject = "ื‘ืจื•ืš ื”ื‘ื ืœืืชืจ ืืฉื›ืจื”!";
                $message = "<html><head><meta charset='UTF-8'></head><body dir='rtl'>";
                $message .= "<h2>ื‘ืจื•ืš ื”ื‘ื, ".$name."!</h2>";
                $message .= "<p>ืชื•ื“ื” ืขืœ ื”ื”ืจืฉืžื” ืœืืชืจ ืืฉื›ืจื”.</p>";
                $message .= "<p>ื›ืขืช ืชื•ื›ืœ ืœื”ืชื—ื™ืœ ืœื”ืฉืชืžืฉ ื‘ืฉื™ืจื•ืชื™ื ืฉืœื ื•.</p>";
                $message .= "</body></html>";
                
                sendEmail($email, $subject, $message, 'ืืฉื›ืจื” - ื‘ืจื•ืš ื”ื‘ื');
                
                echo "ok";
            } else {
                echo "ืฉื’ื™ืื” ื‘ื”ืจืฉืžื”!";
            }
        }
    }
}

// Connexion
if (isset($_POST['email']) && isset($_POST['mdp']) && !isset($_POST['name']) && isset($_POST['action']) && $_POST['action'] == "connexion") {
    $email = $_POST['email'];
    $mdp = $_POST['mdp'];

    if ($email == "" || $mdp == "") {
        echo "ืฉื“ื•ืช ื—ื•ื‘ื” ืจื™ืงื™ื!";
    } else {
        $sql = mysqli_query($link, "SELECT * FROM rent_users WHERE email='".$email."' and mdp='".$mdp."'");
        $row_cnt = mysqli_num_rows($sql);
        if ($row_cnt == 0) {
            echo "ื”ื—ืฉื‘ื•ืŸ ื”ื–ื” ืื™ื ื• ืงื™ื™ื!";
        } else {
            $row = mysqli_fetch_array($sql, MYSQLI_ASSOC);
            $_SESSION['user']['id'] = $row['id'];
            $_SESSION['user']['name'] = $row['name'];
            $_SESSION['user']['type_user'] = $row['fk_type'];
            $_SESSION['user']['agreed_conditions'] = $row['agreed_conditions'];
            echo "ok";
        }
    }
}

// Rรฉcupรฉration mot de passe
if (isset($_POST['email']) && isset($_POST['action']) && $_POST['action'] == "recover_password") {
    $email = $_POST['email'];

    if ($email == "") {
        echo "ืื ื ื”ื–ืŸ ืื™ืžื™ื™ืœ";
    } else {
        $sql = mysqli_query($link, "SELECT * FROM rent_users WHERE email='".$email."'");
        if (mysqli_num_rows($sql) == 0) {
            echo "ืœื ื ืžืฆื ื—ืฉื‘ื•ืŸ ืขื ื”ืื™ืžื™ื™ืœ ื”ื–ื”";
        } else {
            $row = mysqli_fetch_array($sql, MYSQLI_ASSOC);

            $subject = "ืฉื—ื–ื•ืจ ืกื™ืกืžื” - ืืฉื›ืจื”";
            $message = "<html><head><meta charset='UTF-8'></head><body dir='rtl'>";
            $message .= "<h2>ืฉื—ื–ื•ืจ ืกื™ืกืžื”</h2>";
            $message .= "<p>ืœื”ืœืŸ ืคืจื˜ื™ ื”ื”ืชื—ื‘ืจื•ืช ืฉืœืš:</p>";
            $message .= "<p><strong>ืื™ืžื™ื™ืœ:</strong> ".$email."</p>";
            $message .= "<p><strong>ืกื™ืกืžื”:</strong> ".$row['mdp']."</p>";
            $message .= "</body></html>";

            sendEmail($email, $subject, $message, 'ืืฉื›ืจื” - ืฉื—ื–ื•ืจ ืกื™ืกืžื”');
            echo "ok";
        }
    }
}





web shell, Coded By 2019