$userid = $_SESSION['id'];
$sql = mysql_query("select * from myusers where id = '$userid'");
$row = mysql_fetch_array($sql);
$submit = $_POST['submit'];
if ($submit == 'Edit Account')
{
$username = $_POST['username'];
$fname = $_POST['fname'];
$lname = $_POST['lname'];
$email = $_POST['email'];
$pass = $_POST['pass'];
$passconf = $_POST['passconf'];
$hintcat = $_POST['hintcat'];
$hintanswer = $_POST['hintanswer'];
$country = $_POST['country'];
$unencrypt = $_POST['pass'];
$encrypted = md5($unencrypt);
if ($pass != $_POST['passconf'])
{
echo "Your passwords don't match
";
}
else
{
$upsql = mysql_query("update myusers set username='$username',fname = '$fname',lname= '$lname',email = '$email',unencrypt = '$unencrypt', password = '$encrypted',hintcat = '$hincat',hintanswer = '$hintanswer' where id = '$userid'");
$tmp = $_FILES['avatar']['tmp_name'];
if ($tmp)
{
$size = getimagesize($tmp);
$src_img = imagecreatefromjpeg($tmp);
$thumb = imagecreatetruecolor(50,50);
imagecopyresampled($thumb, $src_img, 0,0,0,0,50,50,$size[0],$size[1]);
imagejpeg($thumb,"avatars/".$userid.".jpg");
}
if (!$upsql) echo mysql_error();
}
}
$fname = $row['fname'];
echo "Welcome ".$fname."
";
?>