drzil26260 2014-10-05 11:33
浏览 84
已采纳

PHP将数据从表单输入到SQL数据库中

Hello I wish to input some data from a HTML form in my website into a SQL database. Here is my database so far.

  • 写回答

1条回答 默认 最新

  • duan3601 2014-10-05 11:51
    关注

    You could easily just call the addNewUser() function passing the required parameters as:

    addNewUser($connect,$username,$password,$dbtable);
    

    A better usage example would be to first check that the form has been already submitted to prevent any direct access or empty records and PHP warnings by checking that form fields have been submitted, ie.

    if(isset($_POST["username"]) && isset($_POST["password"]))
    {
        $username=$_POST['username'];
        $password=$_POST["password"];
    
        addNewUser($connect,$username,$password,$dbtable);
     }
    

    Other than that this seems to be a very basic example and also a bad practise on how to implement a new insert in the database so be sure not to use any of this in a production environment. IE:

    • No input filtering.
    • Trying to "imitate" an Auto Increment field for the user
    • Vulnerable to SQL injection and even prone to fail by accident if say a user tries to register with a username or password that contains a quote
    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 linux驱动,linux应用,多线程
  • ¥20 我要一个分身加定位两个功能的安卓app
  • ¥15 基于FOC驱动器,如何实现卡丁车下坡无阻力的遛坡的效果
  • ¥15 IAR程序莫名变量多重定义
  • ¥15 (标签-UDP|关键词-client)
  • ¥15 关于库卡officelite无法与虚拟机通讯的问题
  • ¥15 目标检测项目无法读取视频
  • ¥15 GEO datasets中基因芯片数据仅仅提供了normalized signal如何进行差异分析
  • ¥100 求采集电商背景音乐的方法
  • ¥15 数学建模竞赛求指导帮助