|  |  | @ -334,7 +334,9 @@ function validUserPass($user, $pass) | 
			
		
	
		
		
			
				
					
					|  |  |  | 	$key = 'ckp'.rand(1000000,9999999); |  |  |  | 	$key = 'ckp'.rand(1000000,9999999); | 
			
		
	
		
		
			
				
					
					|  |  |  | 	$_SESSION['ckpkey'] = $key; |  |  |  | 	$_SESSION['ckpkey'] = $key; | 
			
		
	
		
		
			
				
					
					|  |  |  | 	$_SESSION[$key] = array('who' => $user, 'id' => $user); |  |  |  | 	$_SESSION[$key] = array('who' => $user, 'id' => $user); | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 	return true; | 
			
		
	
		
		
			
				
					
					|  |  |  |  } |  |  |  |  } | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  |  return false; | 
			
		
	
		
		
			
				
					
					|  |  |  | } |  |  |  | } | 
			
		
	
		
		
			
				
					
					|  |  |  | # |  |  |  | # | 
			
		
	
		
		
			
				
					
					|  |  |  | function logout() |  |  |  | function logout() | 
			
		
	
	
		
		
			
				
					|  |  | @ -364,6 +366,8 @@ function requestRegister() | 
			
		
	
		
		
			
				
					
					|  |  |  | # |  |  |  | # | 
			
		
	
		
		
			
				
					
					|  |  |  | function tryLogInOut() |  |  |  | function tryLogInOut() | 
			
		
	
		
		
			
				
					
					|  |  |  | { |  |  |  | { | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  |  global $loginfailed; | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 
 | 
			
		
	
		
		
			
				
					
					|  |  |  |  // If already logged in, it will ignore User/Pass |  |  |  |  // If already logged in, it will ignore User/Pass | 
			
		
	
		
		
			
				
					
					|  |  |  |  if (isset($_SESSION['ckpkey'])) |  |  |  |  if (isset($_SESSION['ckpkey'])) | 
			
		
	
		
		
			
				
					
					|  |  |  |  { |  |  |  |  { | 
			
		
	
	
		
		
			
				
					|  |  | @ -373,21 +377,29 @@ function tryLogInOut() | 
			
		
	
		
		
			
				
					
					|  |  |  |  } |  |  |  |  } | 
			
		
	
		
		
			
				
					
					|  |  |  |  else |  |  |  |  else | 
			
		
	
		
		
			
				
					
					|  |  |  |  { |  |  |  |  { | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 	$login = getparam('Login', false); | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 	if (nuem($login)) | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 		return; | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 
 | 
			
		
	
		
		
			
				
					
					|  |  |  | 	$user = getparam('User', false); |  |  |  | 	$user = getparam('User', false); | 
			
		
	
		
		
			
				
					
					|  |  |  | 	if ($user !== NULL) |  |  |  | 	if ($user !== NULL) | 
			
		
	
		
		
			
				
					
					|  |  |  | 		$user = loginStr($user); |  |  |  | 		$user = loginStr($user); | 
			
		
	
		
		
			
				
					
					|  |  |  | 	if (nuem($user)) |  |  |  | 	if (nuem($user)) | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 	{ | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 		$loginfailed = true; | 
			
		
	
		
		
			
				
					
					|  |  |  | 		return; |  |  |  | 		return; | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 	} | 
			
		
	
		
		
			
				
					
					|  |  |  | 
 |  |  |  | 
 | 
			
		
	
		
		
			
				
					
					|  |  |  | 	$pass = getparam('Pass', false); |  |  |  | 	$pass = getparam('Pass', false); | 
			
		
	
		
		
			
				
					
					|  |  |  | 	if (nuem($pass)) |  |  |  | 	if (nuem($pass)) | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 	{ | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 		$loginfailed = true; | 
			
		
	
		
		
			
				
					
					|  |  |  | 		return; |  |  |  | 		return; | 
			
		
	
		
		
			
				
					
					|  |  |  |  |  |  |  | 	} | 
			
		
	
		
		
			
				
					
					|  |  |  | 
 |  |  |  | 
 | 
			
		
	
		
		
			
				
					
					|  |  |  | 	$login = getparam('Login', false); |  |  |  | 	$valid = validUserPass($user, $pass); | 
			
				
				
			
		
	
		
		
			
				
					
					|  |  |  | 	if (nuem($login)) |  |  |  | 	if (!$valid) | 
			
				
				
			
		
	
		
		
			
				
					
					|  |  |  | 		return; |  |  |  | 		$loginfailed = true; | 
			
				
				
			
		
	
		
		
			
				
					
					|  |  |  | 
 |  |  |  |  | 
			
		
	
		
		
			
				
					
					|  |  |  | 	validUserPass($user, $pass); |  |  |  |  | 
			
		
	
		
		
	
		
		
	
		
		
	
		
		
			
				
					
					|  |  |  |  } |  |  |  |  } | 
			
		
	
		
		
			
				
					
					|  |  |  | } |  |  |  | } | 
			
		
	
		
		
			
				
					
					|  |  |  | # |  |  |  | # | 
			
		
	
	
		
		
			
				
					|  |  | 
 |