-
Notifications
You must be signed in to change notification settings - Fork 68
/
change_password.php
144 lines (130 loc) · 7.42 KB
/
change_password.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
<?php
session_start();
if (!isset($_SESSION['loggedin']) || $_SESSION['loggedin'] != true) {
header("location: user_login.php");
exit;
}
if (isset($_SESSION['loggedin']) && $_SESSION['loggedin'] == true) {
$login_status = true;
}
if ($_SERVER["REQUEST_METHOD"] == "POST") {
include 'partials/_dbconnect.php';
$old_password = $_POST['old_password'];
$new_password = $_POST['new_password'];
$confirm_password = $_POST['confirm_password'];
$query = "SELECT * FROM `users` WHERE `user_id` = '" . $_SESSION['user_id'] . "'";
$result = mysqli_query($conn, $query);
$num = mysqli_num_rows($result);
if ($num == 1) {
$row = mysqli_fetch_assoc($result);
if (password_verify($old_password, $row['password'])) {
if ($new_password == $confirm_password) {
$hash = password_hash($new_password, PASSWORD_DEFAULT);
$query = "UPDATE `users` SET `password` = '$hash' WHERE `user_id` = '" . $_SESSION['user_id'] . "'";
$result = mysqli_query($conn, $query);
if ($result) {
echo '<script>alert("Password changed successfully!")</script>';
} else {
echo '<script>alert("Failed to change password!")</script>';
}
} else {
echo '<script>alert("New password and confirm password do not match!")</script>';
}
} else {
echo '<script>alert("Old password is incorrect!")</script>';
}
}
}
?>
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>Change Password</title>
<!-- <link rel="stylesheet" href="https://maxcdn.bootstrapcdn.com/bootstrap/4.5.2/css/bootstrap.min.css">
<link rel="stylesheet" href=".css">
<link rel="stylesheet" href="main.css"> -->
<!-- Google fonts -->
<link rel="preconnect" href="https://fonts.googleapis.com" />
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin />
<link
href="https://fonts.googleapis.com/css2?family=Poppins:ital,wght@0,100;0,200;0,300;0,400;0,500;0,600;0,700;0,800;0,900;1,100;1,200;1,300;1,400;1,500;1,600;1,700;1,800;1,900&display=swap"
rel="stylesheet" />
<!-- Bootstrap icons -->
<link rel="stylesheet" href="https://cdn.jsdelivr.net/npm/[email protected]/font/bootstrap-icons.min.css">
<!-- <link rel="stylesheet" href="main.css"> -->
<link rel="stylesheet" href="output.css">
</head>
<body>
<nav
class="hidden lg:flex sm:max-w-xl md:max-w-2xl lg:max-w-5xl xl:max-w-7xl w-full items-center justify-between max-w-7xl mx-auto font-poppins py-4">
<a href="index.php"><img src="./images/logo/logo.webp" alt="logo" class="w-36"></a>
<div class="flex sm:gap-1 md:gap-2">
<a href="home.php"
class="hover:bg-gray-200 transition-all ease-in-out duration-100 active:bg-gray-300 focus:bg-gray-300 rounded-full hover:text-black py-2 px-4">Restaurants</a>
<a href="new_track_order.php"
class="hover:bg-gray-200 transition-all ease-in-out duration-100 active:bg-gray-300 focus:bg-gray-300 rounded-full hover:text-black py-2 px-4">Orders</a>
<a href="#"
class="hover:bg-gray-200 transition-all ease-in-out duration-100 active:bg-gray-300 focus:bg-gray-300 rounded-full hover:text-black py-2 px-4">Contact</a>
<?php if ($login_status == true) {
echo '<a href="profile.php" class="hover:bg-gray-200 transition-all ease-in-out duration-100 active:bg-gray-300 focus:bg-gray-300 rounded-full hover:text-black py-2 px-4">Account</a>';
} ?>
</div>
<div class="flex">
<div class="mx-3">
<?php if ($login_status == true) {
echo '<a href="user_logout.php" class="bg-red-500 hover:bg-red-600 transition-all ease-in-out duration-75 cursor-pointer w-max px-6 py-2 text-white rounded-full">Logout</a>';
} else {
echo '<a href="user_login.php" class="bg-gray-900 hover:bg-gray-800 focus:border-white cursor-pointer w-max transition-all ease-in-out duration-75 px-6 py-2 text-white rounded-full">Login</a>';
} ?>
</div>
</nav>
<!-- nav for small device -->
<div class="flex items-center justify-between max-w-7xl mx-auto font-poppins bg-white py-3 px-5 lg:hidden">
<a href="index.php"><img src="./images/logo/logo.webp" alt="logo" class="w-36 "></a>
<i class="bi bi-list menu select-none text-3xl"></i>
</div>
<div class="bg-gray-200 w-full top-5 font-poppins overflow-hidden px-5 py-3 hidden lg:hidden mb-5" id="nav-items">
<div class="flex flex-col gap-4">
<a href="#"
class="hover:bg-white focus:bg-white transition-all ease-in-out duration-100 py-2 px-3 rounded-md hover:text-black">Restaurants</a>
<a href="new_track_order.php"
class="hover:bg-white focus:bg-white transition-all ease-in-out duration-100 py-2 px-3 rounded-md hover:text-black">Orders</a>
<a href="#"
class="hover:bg-white focus:bg-white transition-all ease-in-out duration-100 py-2 px-3 rounded-md hover:text-black">Contact</a>
<?php if ($login_status == true) {
echo '<a href="profile.php" class="hover:bg-white focus:bg-white transition-all ease-in-out duration-100 py-2 px-3 rounded-md hover:text-black">Account</a>';
} ?>
<div>
<h2 class="text-base text-gray-400 mt-3">User actions</h2>
<div class="h-[1px] bg-gray-300 w-full"></div>
</div>
<?php if ($login_status == true) {
echo '<a href="user_logout.php" class="bg-red-500 hover:bg-red-600 transition-all ease-in-out duration-75 cursor-pointer w-max px-6 py-2 text-white rounded-full">Logout</a>';
} else {
echo '<a href="user_login.php" class="bg-gray-900 hover:bg-gray-800 focus:border-white cursor-pointer w-max transition-all ease-in-out duration-75 px-6 py-2 text-white rounded-full">Login</a>';
}
?>
</div>
</div>
<div class="change-password-container flex justify-center items-center h-screen bg-[#f7f7f7]">
<div class="change-password-card bg-white p-5 rounded-xl shadow-sm w-full max-w-[500px]">
<h2 class="font-bold mt-[10px] text-[#333]">Change Password</h2>
<form action="<?php echo $_SERVER['PHP_SELF']; ?>" method="post" class="change-password-form mt-5">
<label class="font-bold mb-1 text-[#333]" for="old_password">Old Password:</label>
<input type="password" class="form-control w-full p-[10px] mb-5 border border-[#ddd] rounded-md" id="old_password" name="old_password" required>
<label class="font-bold mb-1 text-[#333]" for="new_password">New Password:</label>
<input type="password" class="form-control w-full p-[10px] mb-5 border border-[#ddd] rounded-md" id="new_password" name="new_password" required>
<label class="font-bold mb-1 text-[#333]" for="confirm_password">Confirm Password:</label>
<input type="password" class="form-control w-full p-[10px] mb-5 border border-[#ddd] rounded-md" id="confirm_password" name="confirm_password" required>
<button type="submit" class="w-full p-[10px] bg-[#333] text-white border-none rounded-md cursor-pointer hover:bg-[#555]">Change Password</button>
</form>
</div>
</div>
<script src="menu.js"></script>
<script src="https://code.jquery.com/jquery-3.5.1.slim.min.js"></script>
<script src="https://cdn.jsdelivr.net/npm/[email protected]/dist/umd/popper.min.js"></script>
<script src="https://maxcdn.bootstrapcdn.com/bootstrap/4.5.2/js/bootstrap.min.js"></script>
</body>
</html>