doushajian2018 2013-09-01 02:05
浏览 49
已采纳

如果存在变量则更新否则回显错误消息?

How can I make this script to where if it finds that the fname and lname do not exist that it will pop up a message saying that they never signed in.

<?php
session_start();
include_once("connect.php");
date_default_timezone_set("America/Winnipeg");
$date = ("m-d-Y");
$timeout = date("g:i:s a");
if ("SELECT EXISTS(
        SELECT *
        FROM signin_out
        WHERE   
            lname='" . $_POST['lastname'] . "'
            AND fname='" . $_POST['firstname'] . "'  
            AND date='" . $date . "')"
) {
    mysql_query("
        UPDATE signin_out
            SET timeout='" . $timeout . "' 
        WHERE
            lname='" . $_POST['lastname'] . "'
            AND fname='" . $_POST['firstname'] . "'
            AND timeout=''
    ");
    header("Location: ../index.html");
} else {
    echo "<script type='text/javascript>'";
    echo "alert('<p>Oops! You never signed in!</p><br><p>Please contact a
                    Librarian</p>');'";
    echo "</script>'";
    header('Location: ../index.php?notsignedin');
}
?>

This is an intranet site for a highschool.

  • 写回答

3条回答 默认 最新

  • dongxian8858 2013-09-01 02:16
    关注
    $sql = "SELECT COUNT(*) signedin FROM signin_out
            WHERE lname = '" . mysql_real_escape_string($_POST['lastname']) . "'
            AND fname = '" . mysql_real_escape_string($_POST['lastname']) . "'
            AND date = '$date'";
    $result mysql_query($sql) or die(myqsl_error());
    $row = mysql_fetch_assoc($result);
    if ($row['signedin'])) {
        // update table
    } else {
        // Report not signed in
    }
    

    However, you really should switch to mysqli or PDO so you can use parametrized queries instead of concatenating strings, so you don't have to worry as much about escaping them.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
查看更多回答(2条)

报告相同问题?

悬赏问题

  • ¥15 关于logstash转发日志时发生的部分内容丢失问题
  • ¥17 pro*C预编译“闪回查询”报错SCN不能识别
  • ¥15 微信会员卡接入微信支付商户号收款
  • ¥15 如何获取烟草零售终端数据
  • ¥15 数学建模招标中位数问题
  • ¥15 phython路径名过长报错 不知道什么问题
  • ¥15 深度学习中模型转换该怎么实现
  • ¥15 Stata外部命令安装问题求帮助!
  • ¥15 从键盘随机输入A-H中的一串字符串,用七段数码管方法进行绘制。提交代码及运行截图。
  • ¥15 如何用python向钉钉机器人发送可以放大的图片?