[LEFT]$username=trim($_POST['username']);
$password=trim($_POST['password']);
[LEFT]include_once("config.php");
$db_link = mysql_connect($location, $mysql_user, $mysql_password) or die("error in connectiong to db" mysql_error());
mysql_select_db($database, $db_link) or die("error in selecting db" mysql_error());
$sql = "SELECT * FROM `users` WHERE `user_name` = '".$username."' AND `password` = '".$password."'";
$result = mysql_query($sql) or die("error in sending request");
$userExist = mysql_num_rows($result);
if($userExist > 0)
{
$_SESSION['rightuser'] = $username;
$_SESSION[['password']=$password;
if( $_SESSION['rightuser']=="admin" AND $_SESSION[['password']=="mk")
{
header("location: admin.php");
}
else
echo'1';
}
else
echo '0';[/LEFT]
[/LEFT]
[LEFT] ?>[/LEFT]