Remove verified check

This commit is contained in:
Floorb 2021-07-17 12:36:21 -04:00
parent 573dafaf28
commit 8345d58d05
3 changed files with 4 additions and 8 deletions

View file

@ -63,7 +63,7 @@ if (isset($_POST['forgot'])) {
} else if (isset($_POST['signin'])) { // Login process } else if (isset($_POST['signin'])) { // Login process
if (!empty($_POST['username']) && !empty($_POST['password'])) { if (!empty($_POST['username']) && !empty($_POST['password'])) {
$username = trim($_POST['username']); $username = trim($_POST['username']);
$query = $conn->prepare("SELECT id, password, banned, verified FROM users WHERE username = ?"); $query = $conn->prepare("SELECT id, password, banned FROM users WHERE username = ?");
$query->execute([$username]); $query->execute([$username]);
$row = $query->fetch(); $row = $query->fetch();
$needs_rehash = false; $needs_rehash = false;
@ -82,16 +82,13 @@ if (isset($_POST['forgot'])) {
if ($row['banned']) { if ($row['banned']) {
// User is banned // User is banned
$error = $lang['banned']; $error = $lang['banned'];
} if ($row['verified']) { } else {
// Login successful // Login successful
$_SESSION['token'] = md5($db_id . $username); $_SESSION['token'] = md5($db_id . $username);
$_SESSION['username'] = $username; $_SESSION['username'] = $username;
header('Location: ' . $_SERVER['HTTP_REFERER']); header('Location: ' . $_SERVER['HTTP_REFERER']);
exit(); exit();
} else {
// Account not verified
$error = $lang['notverified'];
} }
} else { } else {
// Username not found or password incorrect. // Username not found or password incorrect.

View file

@ -231,8 +231,8 @@ if ($p_password == "NONE") {
deleteMyPaste($con, $paste_id); deleteMyPaste($con, $paste_id);
} }
} else { } else {
$p_download = "paste.php?download&id=$paste_id&password=" . password_hash(isset($_POST['mypass']), PASSWORD_DEFAULT); $p_download = "paste.php?download&id=$paste_id&password=" . pp_password_hash(isset($_POST['mypass']));
$p_raw = "paste.php?raw&id=$paste_id&password=" . password_hash(isset($_POST['mypass']), PASSWORD_DEFAULT); $p_raw = "paste.php?raw&id=$paste_id&password=" . pp_password_hash(isset($_POST['mypass']));
// Check password // Check password
if (isset($_POST['mypass'])) { if (isset($_POST['mypass'])) {
if (pp_password_verify($_POST['mypass'], $p_password)) { if (pp_password_verify($_POST['mypass'], $p_password)) {

View file

@ -39,7 +39,6 @@ $row = $query->fetch();
$user_id = $row['id']; $user_id = $row['id'];
$user_full_name = $row['full_name']; $user_full_name = $row['full_name'];
$user_platform = Trim($row['platform']); $user_platform = Trim($row['platform']);
$user_verified = $row['verified'];
$user_date = $row['date']; $user_date = $row['date'];
$user_ip = $row['ip']; $user_ip = $row['ip'];
$user_password = $row['password']; $user_password = $row['password'];