duanjue2560 2015-04-20 07:31
浏览 57
已采纳

会员信息输入链接

I am creating a membership system. I created a link after login to show different member information like

http://member_detail.php?memberid=1

But after login, I find that I can access other member information pages to see other member's detail information

http://member_detail.php?memberid=2
http://member_detail.php?memberid=3

So I would like to ask how can prevent above problem to ensure user just can entry their own information page? Thanks!

  • 写回答

1条回答 默认 最新

  • douying4909 2015-04-20 07:39
    关注

    When you login then member is save in session like

    $_SESSION['member_id'] = 1;
    

    and on header or on member.php page on top of page use..

    $member_id = $_GET['memberid'];
    
    if($_SESSION['member_id'] != $member_id){
    header("location:login.php");
    

    // or your action for unauthenticated user }

    here you check get value is authenticated user or not if user is not authenticated user then you redirect this user to login page.. or your action for an unauthenticated user..

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 蓝桥oj3931,请问我错在哪里
  • ¥15 买了个传感器,根据商家发的代码和步骤使用但是代码报错了不会改,有没有人可以看看
  • ¥15 关于#Java#的问题,如何解决?
  • ¥15 加热介质是液体,换热器壳侧导热系数和总的导热系数怎么算
  • ¥100 嵌入式系统基于PIC16F882和热敏电阻的数字温度计
  • ¥15 cmd cl 0x000007b
  • ¥20 BAPI_PR_CHANGE how to add account assignment information for service line
  • ¥500 火焰左右视图、视差(基于双目相机)
  • ¥100 set_link_state
  • ¥15 虚幻5 UE美术毛发渲染