pass=ReplaceBadChar(Trim(request.form("pw")))
pass1=ReplaceBadChar(Trim(request.form("pw1")))
pass2=ReplaceBadChar(Trim(request.form("pw2")))
if pass1pass2 Then
Response.redirect "error.asp?err=1904"
ElseIf strLength(pass1) Response.redirect "error.asp?err=1905"
Else
sqlStr="select * from WP_admin where admin_account='"&session("admin")&"' and admin_password='"&md5(pass)&"'"
set rs = server.createobject("ADODB.RecordSet")
rs.open sqlStr,conn,1,3
If rs.eof Then
Response.redirect "error.asp?err=1906"
Else
rs("admin_password")=md5(pass2)
rs.update
Response.redirect "info.asp?info=2901"
End If
rs.close
Set rs=Nothing
End if
Set conn=nothing
%>