
@@ -108,20 +110,18 @@ if (isset($_POST['btnLogin'])) {
$username=mysqli_real_escape_string($koneksi,$_POST['username']);
$password=mysqli_real_escape_string($koneksi,$_POST['password']);
- //validasi captcha
- /* Bypassed for development
- if ($_POST["captcha_input"] != $_SESSION["captcha_code"]) {
- echo "";
- exit;
- }
- */
+ //validasi captcha - DISABLED SEMENTARA UNTUK DEBUG
+ // if ($_POST["captcha_input"] != $_SESSION["captcha_code"]) {
+ // echo "";
+ // exit;
+ // }
//query login
- $sql_login = "SELECT * FROM tb_pengguna WHERE BINARY username='$username' AND password=MD5('$password')";
+ $sql_login = "SELECT * FROM tb_pengguna WHERE username='$username' AND password=MD5('$password')";
$query_login = mysqli_query($koneksi, $sql_login);
$data_login = mysqli_fetch_array($query_login,MYSQLI_BOTH);
$jumlah_login = mysqli_num_rows($query_login);
@@ -141,8 +141,12 @@ if (isset($_POST['btnLogin'])) {
{window.location = 'index.php';}
})";
}else{
+ $error_msg = "Username atau password salah";
+ if (!$query_login) {
+ $error_msg = "Database error: " . mysqli_error($koneksi);
+ }
echo "";