0){
$found=1;
$insertGoTo = "signup.html?msgR=Duplicate email address please enter again";
header(sprintf("Location: %s", $insertGoTo));
exit();
}
}
$dt=date("Y-m-d h:s:i");
$insertSQL = sprintf("INSERT INTO Users (UserName, UserPassword, UserEmail, FirstName, LastName,hint_password,news,skintips,special,contest,hotnews,exclusive,no_marketting,UserDate) VALUES (%s, %s, %s, %s, %s,%s,'%s','%s','%s','%s','%s','%s','%s','%s')",
GetSQLValueString($_POST['UserName'], "text"),
GetSQLValueString($_POST['Password'], "text"),
GetSQLValueString($_POST['Email'], "text"),
GetSQLValueString($_POST['FirstName'], "text"),
GetSQLValueString($_POST['LastName'], "text"),
GetSQLValueString($_POST['HintPassword'], "text"),
$_REQUEST["news"],$_REQUEST["skintips"],$_REQUEST["special"],
$_REQUEST["contest"],$_REQUEST["hotnews"],$_REQUEST["exclusive"],
$_REQUEST["no_marketting"],$dt
);
//echo $insertSQL;
mysql_select_db($database_fair_conn, $fair_conn);
$Result1 = mysql_query($insertSQL, $fair_conn) or die(mysql_error());
$mm_userid=mysql_insert_id();
$GLOBALS['MM_Username'] = $_POST['UserName'];
$GLOBALS['MM_UserFname'] = $_POST['FirstName'];
$GLOBALS['MM_UserID'] = $mm_userid;
session_register("MM_UserID");
session_register("MM_Username");
session_register("MM_UserFname");
if (isset($_SERVER['QUERY_STRING'])) {
$insertGoTo .= (strpos($insertGoTo, '?')) ? "&" : "?";
$insertGoTo .= $_SERVER['QUERY_STRING'];
}
//if ((($_SERVER["REQUEST_METHOD"] == "POST") && (isset($_SERVER["HTTP_REFERER"]) && strpos($_SERVER["HTTP_REFERER"], $_SERVER["SERVER_NAME"].$_SERVER["PHP_SELF"]) > 0) && isset($_POST))) {
//WA Universal Email object="Mail for Windows"
//Send Loop Once Per Entry
$RecipientEmail = "".((isset($_POST["Email"]))?$_POST["Email"]:"") ."";include("WA_Universal_Email/WAUE_signup_1.html");
//Send Mail All Entries
header(sprintf("Location: %s", $insertGoTo));
}
$loginFormAction = $_SERVER['PHP_SELF'];
if ((isset($_POST["MM_login"])) && ($_POST["MM_login"] == "send_pwd")) {
if (isset($_POST['UserNamelog'])) {
$loginUsername=$_POST['UserNamelog'];
$password=$_POST['PasswordField'];
$MM_fldUserAuthorization = "UserID";
//$MM_redirectLoginSuccess = "index.html";
$MM_redirectLoginFailed = "signup.html?msgL=Invalid email address entered.";
$MM_redirecttoReferrer = false;
mysql_select_db($database_fair_conn, $fair_conn);
$LoginRS__query=sprintf("SELECT UserName, UserPassword, UserID, FirstName,hint_password FROM Users WHERE UserName='%s' ",
get_magic_quotes_gpc() ? $loginUsername : addslashes($loginUsername));
$LoginRS = mysql_query($LoginRS__query, $fair_conn) or die(mysql_error());
$loginFoundUser = mysql_num_rows($LoginRS);
if ($loginFoundUser) {
$loginStrGroup = mysql_result($LoginRS,0,'FirstName');
$mm_userid = mysql_result($LoginRS,0,'UserID');
$_REQUEST["hint"]= mysql_result($LoginRS,0,'hint_password');
$_REQUEST["FirstName"]=$loginStrGroup;
if($_REQUEST["hint"]!=""){
$MM_redirectLoginFailed = "signup.html?msgL=Hint for password found, and mailed to your email address.";
$RecipientEmail = "".((isset($_POST["UserNamelog"]))?$_POST["UserNamelog"]:"") ."";include("WA_Universal_Email/WAUE_forgot_pwd_1.html");
}else{
$MM_redirectLoginFailed = "signup.html?msgL=Sorry,No Hint for password found .";
}
}else{
$MM_redirectLoginFailed = "signup.html?msgL=Sorry, You have specified an invalid login name.Please Try again. .";
}
}else{
$MM_redirectLoginFailed = "signup.html?msgL=Sorry, You have not specified any login name.Please Try again. .";
}
header("Location: ". $MM_redirectLoginFailed );
exit();
}
if ((isset($_POST["MM_login"])) && ($_POST["MM_login"] == "Login")) {
if ($_SESSION["PrevUrl"]!="") {
$MM_redirectLoginSuccess=$_SESSION["PrevUrl"];
}else
$MM_redirectLoginSuccess = "index.html";
$loginFormAction = $_SERVER['PHP_SELF'];
if (isset($_POST['UserNamelog'])) {
$loginUsername=$_POST['UserNamelog'];
$password=$_POST['PasswordField'];
$MM_fldUserAuthorization = "UserID";
//$MM_redirectLoginSuccess = "index.html";
$MM_redirectLoginFailed = "signup.html?msgL=Invalid email or password";
$MM_redirecttoReferrer = false;
mysql_select_db($database_fair_conn, $fair_conn);
$LoginRS__query=sprintf("SELECT UserName, UserPassword, UserID, FirstName FROM Users WHERE UserName='%s' AND UserPassword='%s'",
get_magic_quotes_gpc() ? $loginUsername : addslashes($loginUsername), get_magic_quotes_gpc() ? $password : addslashes($password));
$LoginRS = mysql_query($LoginRS__query, $fair_conn) or die(mysql_error());
$loginFoundUser = mysql_num_rows($LoginRS);
if ($loginFoundUser) {
$loginStrGroup = mysql_result($LoginRS,0,'FirstName');
$mm_userid = mysql_result($LoginRS,0,'UserID');
//declare two session variables and assign them
$GLOBALS['MM_Username'] = $loginUsername;
$GLOBALS['MM_UserFname'] = $loginStrGroup;
//echo $loginStrGroup;
// exit();
//register the session variables
$GLOBALS['MM_UserID'] = $mm_userid;
session_register("MM_UserID");
session_register("MM_Username");
session_register("MM_UserFname");
if (isset($_SESSION['PrevUrl']) && false) {
$MM_redirectLoginSuccess = $_SESSION['PrevUrl'];
}
header("Location: " . $MM_redirectLoginSuccess );
}else {
$GLOBALS['MM_Username'] = "";
$GLOBALS['MM_UserFname'] ="";
session_register("MM_Username");
session_register("MM_UserFname");
header("Location: ". $MM_redirectLoginFailed );
}
}
}
?>
Potent skin whitener and unique skin whitening products from fair and flawless skin