$root_dir = "../";
require_once($root_dir."includes/config.inc.php");
include_once("header.inc.php");
$action = (isset($_REQUEST["action"]) ? $_REQUEST["action"] : '');
if (empty($action)) $action = "showform";
if (!empty($_POST['user']) || !empty($_POST['email']))
{
$action = "sendpw";
}
if ($action == "showform")
{
?>
Choose your username:
OR E-mail address:
}
if ($action == "sendpw")
{
require_once($root_dir."includes/dbconnect.php");
$sqlbase = dbConnect();
if (!empty($_POST["user"])) $mysql = "SELECT * FROM $userstable WHERE user=\"".mysql_real_escape_string($_POST["user"])."\"";
elseif (!empty($_POST["email"])) $mysql = "SELECT * FROM $userstable WHERE email=\"".mysql_real_escape_string($_POST["email"])."\"";
$result = mysql_query($mysql);
while ( $row = mysql_fetch_array($result) )
{
$userID = $row["userID"];
$myusername = $row["user"];
$myemail = $row["email"];
$mypw = $row["password"];
$name = $row["name"];
setConfigs();
$message = $configs['email_forgotpass'];
$message = str_replace('[[username]]', $myusername, $message);
$message = str_replace('[[name]]', $name, $message);
$message = str_replace('[[password]]', $mypw, $message);
mail($myemail, "Lost Password Information", $message, "From: ".$configs['email_from']);
}
if (empty($myusername)) { echo "Sorry, but you specified an invalid username/email."; }
else echo "Your password has been emailed to you and should arrive shortly.";
dbClose($sqlbase);
}
include_once("footer.inc.php");
?>