summaryrefslogtreecommitdiff
path: root/admin/change-password
diff options
context:
space:
mode:
authorConnor Thomson <blumatrikz@gmail.com>2026-09-20 21:23:09 -0700
committerConnor Thomson <blumatrikz@gmail.com>2026-09-20 21:23:09 -0700
commit070a27baa8f93c3bf191459b88d24d7430a78899 (patch)
tree8c96b12d16e1d219ef410ad0e45b2d886368bc5e /admin/change-password
parent83cd353b01660f34d6fd894d15a27fb1b3aeab4c (diff)
Some fixes and updates
Diffstat (limited to 'admin/change-password')
-rwxr-xr-xadmin/change-password/change-password.php60
-rwxr-xr-xadmin/change-password/index.php28
2 files changed, 88 insertions, 0 deletions
diff --git a/admin/change-password/change-password.php b/admin/change-password/change-password.php
new file mode 100755
index 0000000..a5c98be
--- /dev/null
+++ b/admin/change-password/change-password.php
@@ -0,0 +1,60 @@
+<?php
+/*
+ * GNUfault.org - GNUfault's website
+ * Copyright (C) 2026 Connor Thomson
+ *
+ * This program is free software: you can redistribute it and/or modify
+ * it under the terms of the GNU Affero General Public License as published by
+ * the Free Software Foundation, either version 3 of the License, or
+ * (at your option) any later version.
+ *
+ * This program is distributed in the hope that it will be useful,
+ * but WITHOUT ANY WARRANTY; without even the implied warranty of
+ * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
+ * GNU Affero General Public License for more details.
+ *
+ * You should have received a copy of the GNU Affero General Public License
+ * along with this program. If not, see <https://www.gnu.org/licenses/>.
+ */
+
+define('ROOT', rtrim($_SERVER['DOCUMENT_ROOT'], '/') . '/');
+
+require_once ROOT . '/php/user.php';
+
+require_admin();
+
+if ($_SERVER["REQUEST_METHOD"] != "POST") {
+ header("Location: /admin/change-password/");
+ exit;
+}
+
+$username = isset($_POST['username']) ? $_POST['username'] : '';
+
+$password = isset($_POST['password']) ? $_POST['password'] : '';
+$confirmpassword = isset($_POST['confirmpassword']) ? $_POST['confirmpassword'] : '';
+
+if ($confirmpassword != $password) {
+ echo "Passwords do not match!";
+ exit;
+}
+
+try {
+ if (!find_user($username)) {
+ echo "User not found.";
+ exit;
+ }
+
+ $sql = "UPDATE users SET password = :password WHERE username = :username";
+
+ query($sql, [
+ 'password' => password_hash($password, PASSWORD_DEFAULT),
+ 'username' => $username
+ ]);
+} catch (\PDOException $e) {
+ echo "Error: " . $e->getMessage();
+ exit;
+}
+
+header("Location: /admin/");
+
+?>
diff --git a/admin/change-password/index.php b/admin/change-password/index.php
new file mode 100755
index 0000000..fedab8a
--- /dev/null
+++ b/admin/change-password/index.php
@@ -0,0 +1,28 @@
+<?php
+/*
+ * GNUfault.org - GNUfault's website
+ * Copyright (C) 2026 Connor Thomson
+ *
+ * This program is free software: you can redistribute it and/or modify
+ * it under the terms of the GNU Affero General Public License as published by
+ * the Free Software Foundation, either version 3 of the License, or
+ * (at your option) any later version.
+ *
+ * This program is distributed in the hope that it will be useful,
+ * but WITHOUT ANY WARRANTY; without even the implied warranty of
+ * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
+ * GNU Affero General Public License for more details.
+ *
+ * You should have received a copy of the GNU Affero General Public License
+ * along with this program. If not, see <https://www.gnu.org/licenses/>.
+ */
+
+define('ROOT', rtrim($_SERVER['DOCUMENT_ROOT'], '/') . '/');
+
+require_once ROOT . '/php/user.php';
+
+require_admin();
+
+render_content(ROOT . '/html/change-password.html');
+
+?>