douwang9650 2019-04-08 19:32
浏览 35
已采纳

我的while和我的数组sqli请求有问题

I'm php starter and i wan't to make my project. Here is my problem: i make a script which update info on my sqli server but a strange problem comes. It doesn't want to update for no reason.

My code:

<?php

                    $itemchoice = array(
                        'value' => array( '', "1" => $item1, "2" => $item2, "3" => $item3, "4" => $item4, "5" => $item5),
                        'name' => array('', "1" => "item1name", "2" => "item2name", "3" => "item3name", "4" => "item4name", "5" => "item5name"),
                    );

                    $nombre_actuel = 1;

                    echo '<form method="post">';
                    while ($nombre_actuel <= $nombredeligne)
                    {
                        echo '<input type="text" name="'.$itemchoice['name'][$nombre_actuel].'" value="'.$itemchoice['value'][$nombre_actuel].'">';
                        $nombre_actuel++;
                    }
                    echo '<input type="submit" name="envoyer" value="Envoyer">';
                    echo '</form>';

                    if (isset($_POST['item1name'])) {
                        $newitem1 = $_POST['item1name'];
                        $newitem1sql = 'UPDATE navbar SET valeur='.$newitem1.' WHERE item="item1" ';
                        $newitem1result = mysqli_query($db1, $newitem1sql);
                    }

The line

 $newitem1sql = 'UPDATE navbar SET valeur='.$newitem1.' WHERE item="item1" ';

Doesn't work for any reason

  • 写回答

1条回答 默认 最新

  • douzheng0702 2019-04-08 19:47
    关注

    Change this line:

    $newitem1sql = 'UPDATE navbar SET valeur='.$newitem1.' WHERE item="item1" ';
    

    to this:

    $newitem1sql = 'UPDATE navbar SET valeur="'.$newitem1.'" WHERE item="item1" ';
    

    Note: You are open to SQL Injection attack. You should not just take the $_Post[] input and shove it in your SQL without sanitizing. Sanitize and parameterize your query.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 uniapp uview http 如何实现统一的请求异常信息提示?
  • ¥15 有了解d3和topogram.js库的吗?有偿请教
  • ¥100 任意维数的K均值聚类
  • ¥15 stamps做sbas-insar,时序沉降图怎么画
  • ¥15 买了个传感器,根据商家发的代码和步骤使用但是代码报错了不会改,有没有人可以看看
  • ¥15 关于#Java#的问题,如何解决?
  • ¥15 加热介质是液体,换热器壳侧导热系数和总的导热系数怎么算
  • ¥100 嵌入式系统基于PIC16F882和热敏电阻的数字温度计
  • ¥15 cmd cl 0x000007b
  • ¥20 BAPI_PR_CHANGE how to add account assignment information for service line