drq22639 2010-01-04 13:14
浏览 76
已采纳

将PHP变量传递给MySQL查询

What is wrong with this code? I get an empty array. I am passing a PHP variable to the query, but it doesn’t work; when I give a hardcoded value the query returns a result.

echo $sub1 = $examSubject[$i];
$subType = $examType[$i];
$query = $this->db->query("select dSubject_id from tbl_subject_details where dSubjectCode='$sub1'");
print_r($query->result_array());
  • 写回答

3条回答 默认 最新

  • dsirr48088 2010-01-04 13:20
    关注

    Look up “SQL injection”.

    I’m not familiar with $this->db->query; what database driver are you using? The syntax for escaping variables varies from driver to driver.

    Here is a PDO example:

    $preqry = "INSERT INTO mytable (id,name) VALUES (23,?)";
    $stmt = $pdo->prepare($preqry);
    
    $stmt->bindparam(1,$name);
    $stmt->execute();
    
    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
查看更多回答(2条)

报告相同问题?

悬赏问题

  • ¥15 BP神经网络控制倒立摆
  • ¥20 要这个数学建模编程的代码 并且能完整允许出来结果 完整的过程和数据的结果
  • ¥15 html5+css和javascript有人可以帮吗?图片要怎么插入代码里面啊
  • ¥30 Unity接入微信SDK 无法开启摄像头
  • ¥20 有偿 写代码 要用特定的软件anaconda 里的jvpyter 用python3写
  • ¥20 cad图纸,chx-3六轴码垛机器人
  • ¥15 移动摄像头专网需要解vlan
  • ¥20 access多表提取相同字段数据并合并
  • ¥20 基于MSP430f5529的MPU6050驱动,求出欧拉角
  • ¥20 Java-Oj-桌布的计算