%@ LANGUAGE = "VBScript" %>
<%
message = ""
if request.form("action") = "pword" then
dim email, uname
email = ChkString(request.form("email"))
uname = ChkString(request.form("uname"))
strSQL = "SELECT pword, first_name FROM blog_users WHERE username = '" & uname & "' AND email = '" & email & "' "
set dbRS = Conn.Execute(strSQL)
if dbRS.eof then
message = "Sorry, we could not find your account."
else
EmailText = "Hello " & dbRS(1) &"," & chr(13) & chr(13) _
& "Your password is: " & dbRS(0) & " " & chr(13) & chr(13) _
& "Thank you for using ClickBlog 2!"
'Update the from email to be your administrator email account
Set ObjMail = CreateObject("CDONTS.NewMail")
ObjMail.From = "clickblog@clicktech.com"
ObjMail.To= email
ObjMail.Subject = "Your ClickBlog 2 password"
ObjMail.Body = cstr(EmailText)
ObjMail.Send
Set ObjMail = Nothing
message = "Your password has been sent to the email address on record."
end if
end if
strSQL = "SELECT blog_name, allow_new FROM blog_settings"
set dbRS = conn.execute(strSQL)
dim blog_name, allow_new, username
session("blog_name") = dbRS(0)
allow_new = dbRS(1)
if ((request.form("form_codeword") <> "") and (request.form("username") <> "")) then
pword = ChkString(request.form("form_codeword"))
username = ChkString(request.form("username"))
strSQL = "SELECT username,pword,admin,user_id FROM blog_users WHERE pword = '" & pword & "' AND username = '" & username &"'"
set dbRS = conn.execute(strSQL)
dim admin,loggedin,message,userid
if not dbRS.eof then
session("loggedin") = "yes"
session("admin") = dbRS(2)
session("username") = dbRS(0)
session("userid") = dbRS(3)
else
session("loggedin") = ""
session("admin") = ""
session("userid") = ""
session("username") = ""
message = "Log in Failed!"
end if
end if
set dbRS = nothing
conn.close
if request.querystring("logout") = "yes" then
session("loggedin") = ""
session("admin") = ""
session("userid") = ""
session("username") = ""
end if
%>
ClickBlog 2: <%= session("blog_name") %>
ClickBlog!
Welcome to <%= session("blog_name") %><% if session("username") <> "" then %> - Logged in as <%= session("username")%><% end if %>
<% if session("admin") = "yes" then %>
Modify Site Settings
<% end if
if session("loggedin") = "yes" then %>
Update Account
Log Out
<% else %>
<%= message %>
Log In
Forgot Password?
Get Password
Return to Login
<% end if
if (((allow_new = "Yes") or (session("admin") = "yes")) AND (session("loggedin") <> "yes")) then %>