low


SUBMITTED BY: leakage

DATE: Nov. 29, 2015, 6:30 a.m.

FORMAT: Text only

SIZE: 608 Bytes

HITS: 49903

  1. <?php
  2. if (isset($_GET['Change'])) {
  3. // Turn requests into variables
  4. $pass_new = $_GET['password_new'];
  5. $pass_conf = $_GET['password_conf'];
  6. if (($pass_new == $pass_conf)){
  7. $pass_new = mysql_real_escape_string($pass_new);
  8. $pass_new = md5($pass_new);
  9. $insert="UPDATE `users` SET password = '$pass_new' WHERE user = 'admin';";
  10. $result=mysql_query($insert) or die('<pre>' . mysql_error() . '</pre>' );
  11. $html .= "<pre> Password Changed </pre>";
  12. mysql_close();
  13. }
  14. else{
  15. $html .= "<pre> Passwords did not match. </pre>";
  16. }
  17. }
  18. ?>

comments powered by Disqus