zaher1988 Wrote:instead of
$salt = random_str(); $loginkey = generate_loginkey(); $saltedpw = md5(md5($salt).md5('$epass'));
try
$salt = generate_salt(); $loginkey = generate_loginkey(); $saltedpw = salt_password(md5($epass),$salt);
still can't login ..
$player = $_SESSION['player'];
$epass = strip_tags($_POST['pass']);
$salt = generate_salt();
$loginkey = generate_loginkey();
$saltedpw = salt_password(md5($epass),$salt);
$update_array = array(
'username' => $player,
'password' => $saltedpw,
'salt' => $salt,
'loginkey' => $loginkey,
);
// $db->update_query("mybb_users", $update_array, "uid='{$user['uid']}'");
$query = $db->query("update mybb_users set password='$saltedpw', salt='$salt', loginkey='$loginkey' where username='$player'");
session_destroy();
print "<center><font face=\"verdana\" color=\"red\" size=\"2\"><b>Success!</b></font></center><p align=\"center\">Your password has been changed!<br>Please <a href=\"page.box?content=home\">relogin!</a></p>";