Here is the code for the page
<?php
session_start();
?>
<?php require_once('../Connections/connUserareas.php'); ?>
<?php require_once('../Connections/mySQL.php'); ?>
<?php
$myUsername_rsLogin = "0";
if (isset($HTTP_POST_VARS['username'])) {
$myUsername_rsLogin = (get_magic_quotes_gpc()) ? $HTTP_POST_VARS['username'] : addslashes($HTTP_POST_VARS['username']);
}
$myPassword_rsLogin = "0";
if (isset($HTTP_POST_VARS['password'])) {
$myPassword_rsLogin = (get_magic_quotes_gpc()) ? $HTTP_POST_VARS['password'] : addslashes($HTTP_POST_VARS['password']);
}
mysql_select_db($database_connUserareas, $connUserareas);
$query_rsLogin = sprintf("SELECT Username, Password FROM companies WHERE Username = '%s' AND Password = '%s'", $myUsername_rsLogin,$myPassword_rsLogin);
$rsLogin = mysql_query($query_rsLogin, $connUserareas) or die(mysql_error());
$row_rsLogin = mysql_fetch_assoc($rsLogin);
$totalRows_rsLogin = mysql_num_rows($rsLogin);
mysql_select_db($database_mySQL, $mySQL);
$query_rsNews = "SELECT * FROM news WHERE onFront = 'Y'";
$rsNews = mysql_query($query_rsNews, $mySQL) or die(mysql_error());
$row_rsNews = mysql_fetch_assoc($rsNews);
$totalRows_rsNews = mysql_num_rows($rsNews);
if($HTTP_POST_VARS['action']=="login"){
if($totalRows_rsLogin==0){
$errorMessage = "Sorry, you login information in incorrect";
mysql_free_result($rsLogin);
} else {
mysql_free_result($rsLogin);
session_register("Username");
$HTTP_SESSION_VARS['Username'] = $HTTP_POST_VARS['username'];
header("Location: home.php");
}
}
?>