prepare("SELECT * FROM users WHERE username = ?"); $stmt->execute([$username]); $user = $stmt->fetch(); if ($user && md5($password) == $user['password']) { $_SESSION['user_data'] = $user; $_SESSION['admin_id'] = $user['id']; $_SESSION['admin_name'] = $user['full_name']; header("Location: index.php"); exit(); } else { $error = "ชื่อผู้ใช้หรือรหัสผ่านไม่ถูกต้อง"; } } ?>