|
|
@ -35,22 +35,17 @@ if ($_SERVER['REQUEST_METHOD'] == "POST")
|
|
|
|
$fUsername = escape_string ($_POST['fUsername']);
|
|
|
|
$fUsername = escape_string ($_POST['fUsername']);
|
|
|
|
$fPassword = escape_string ($_POST['fPassword']);
|
|
|
|
$fPassword = escape_string ($_POST['fPassword']);
|
|
|
|
|
|
|
|
|
|
|
|
$query = "SELECT password FROM $table_mailbox WHERE username='$fUsername' AND active='1'";
|
|
|
|
$active = db_get_boolean(True);
|
|
|
|
if ('pgsql'==$CONF['database_type'])
|
|
|
|
$query = "SELECT password FROM $table_mailbox WHERE username='$fUsername' AND active=$active";
|
|
|
|
{
|
|
|
|
|
|
|
|
$query = "SELECT password FROM $table_mailbox WHERE username='$fUsername' AND active=true";
|
|
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
$result = db_query ($query);
|
|
|
|
$result = db_query ($query);
|
|
|
|
if ($result['rows'] == 1)
|
|
|
|
if ($result['rows'] == 1)
|
|
|
|
{
|
|
|
|
{
|
|
|
|
$row = db_array ($result['result']);
|
|
|
|
$row = db_array ($result['result']);
|
|
|
|
$password = pacrypt ($fPassword, $row['password']);
|
|
|
|
$password = pacrypt ($fPassword, $row['password']);
|
|
|
|
|
|
|
|
|
|
|
|
$query = "SELECT * FROM $table_mailbox WHERE username='$fUsername' AND password='$password' AND active='1'";
|
|
|
|
$query = "SELECT * FROM $table_mailbox WHERE username='$fUsername' AND password='$password' AND active=$active";
|
|
|
|
if ('pgsql'==$CONF['database_type'])
|
|
|
|
|
|
|
|
{
|
|
|
|
|
|
|
|
$query = "SELECT * FROM $table_mailbox WHERE username='$fUsername' AND password='$password' AND active=true";
|
|
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
$result = db_query ($query);
|
|
|
|
$result = db_query ($query);
|
|
|
|
if ($result['rows'] != 1)
|
|
|
|
if ($result['rows'] != 1)
|
|
|
|
{
|
|
|
|
{
|
|
|
|