更新 src/source.txt

This commit is contained in:
jiangsir 2024-09-12 17:54:21 +08:00
parent a3f65eb516
commit b95785de76

View File

@ -1,29 +1,28 @@
<?php <?php
$flag = "XXXXXXXXXXXXXXXXXXXXXX"; $flag = "XXXXXXXXXXXXXXXXXXXXXX";
$secret = "XXXXXXXXXX"; $secret = "XXXXXXXXXX";
if(!isset($_POST["username"]) || !isset($_POST["password"])){ if(!isset($_POST["username"]) || !isset($_POST["password"])){
exit(); exit();
} }
$username = $_POST["username"]; $username = $_POST["username"];
$password = $_POST["password"]; $password = $_POST["password"];
setcookie("ahash", md5($secret . urldecode("admin" . "admin")), time() + (60 * 60 * 24 * 7));
if (!empty($_COOKIE["check"])) { if (!empty($_COOKIE["check"])) {
if (urldecode($username) === "admin" && urldecode($password) != "admin") { if (urldecode($username) === "admin" && urldecode($password) != "admin") {
if ($_COOKIE["check"] === md5($secret . urldecode($username . $password))) { if ($_COOKIE["check"] === md5($secret . urldecode($username . $password))) {
echo "Login successful.\n"; echo "Login successful.\n";
die ("The flag is ". $flag); die ("The flag is ". $flag);
} }
else { else {
die ("Wrong Cookies. Get out!"); die ("Wrong Cookies. Get out!");
} }
} }
else { else {
die ("Admins only"); die ("Admins only");
} }
} }
setcookie("ahash", md5($secret . urldecode("admin" . "admin")), time() + (60 * 60 * 24 * 7));
?> ?>