if ($email == $dbemail && $lname == $dblname)
{
$password = rand(10000,20000);
$passnew = md5($password);
mysql_query("UPDATE users SET userpass='$passnew' WHERE email='$email'") or die(mysql_error());
echo "Password was changed succesfully";
}
else {
echo "email not sent. details arent te same";
}