Remove verified check

This commit is contained in:
Floorb 2021-07-17 12:36:21 -04:00
parent 573dafaf28
commit 8345d58d05
3 changed files with 4 additions and 8 deletions

View file

@ -63,7 +63,7 @@ if (isset($_POST['forgot'])) {
} else if (isset($_POST['signin'])) { // Login process
if (!empty($_POST['username']) && !empty($_POST['password'])) {
$username = trim($_POST['username']);
$query = $conn->prepare("SELECT id, password, banned, verified FROM users WHERE username = ?");
$query = $conn->prepare("SELECT id, password, banned FROM users WHERE username = ?");
$query->execute([$username]);
$row = $query->fetch();
$needs_rehash = false;
@ -82,16 +82,13 @@ if (isset($_POST['forgot'])) {
if ($row['banned']) {
// User is banned
$error = $lang['banned'];
} if ($row['verified']) {
} else {
// Login successful
$_SESSION['token'] = md5($db_id . $username);
$_SESSION['username'] = $username;
header('Location: ' . $_SERVER['HTTP_REFERER']);
exit();
} else {
// Account not verified
$error = $lang['notverified'];
}
} else {
// Username not found or password incorrect.

View file

@ -231,8 +231,8 @@ if ($p_password == "NONE") {
deleteMyPaste($con, $paste_id);
}
} else {
$p_download = "paste.php?download&id=$paste_id&password=" . password_hash(isset($_POST['mypass']), PASSWORD_DEFAULT);
$p_raw = "paste.php?raw&id=$paste_id&password=" . password_hash(isset($_POST['mypass']), PASSWORD_DEFAULT);
$p_download = "paste.php?download&id=$paste_id&password=" . pp_password_hash(isset($_POST['mypass']));
$p_raw = "paste.php?raw&id=$paste_id&password=" . pp_password_hash(isset($_POST['mypass']));
// Check password
if (isset($_POST['mypass'])) {
if (pp_password_verify($_POST['mypass'], $p_password)) {

View file

@ -39,7 +39,6 @@ $row = $query->fetch();
$user_id = $row['id'];
$user_full_name = $row['full_name'];
$user_platform = Trim($row['platform']);
$user_verified = $row['verified'];
$user_date = $row['date'];
$user_ip = $row['ip'];
$user_password = $row['password'];