duanjia7607 2018-05-16 17:38
浏览 41

PHP注册表单的未知问题

I'm trying to make a PHP login system, and I can't figure out what's causing it to not work.

Below is the PHP code from the register page. When executed, it fails to create a new user account.

<?php

if(isset($_POST['submit_btn']))
{
    $username = $_POST['username'];
    $password = $_POST['password'];
    $cpassword = $_POST['cpassword'];

    if($_password==$_cpassword)
    {
        $query= "SELECT * FROM user WHERE username='$username'";

        $query_run = mysqli_query($con,$query);

        if(mysqli_num_rows($query_run)>0)
        {
            echo '<script type="text/javascript">alert("This Username Already exists.. Please try another username!")</script>';
        }
        {
            $query= "insert into user values('$username','$password')";
            $query_run = mysqli_query($con,$query);

            if($query_run)
            {
                echo '<script type="text/javascript">alert("User registered. Please login")</script>';
            }
            else
            {
                '<script type="text/javascript">alert("Error!")</script>';
            }
        }
    }
}

?>
  • 写回答

1条回答 默认 最新

  • douxi8759 2018-05-16 17:41
    关注

    The problem is here

    if($_password==$_cpassword)
    

    You'd defined these variables:

    $password = $_POST['password'];
    $cpassword = $_POST['cpassword'];
    

    So, use $password and $cpassword instead

    if($password == $cpassword)
    ...
    

    By the way, your code is vulnerable to SQL injection attack. Use prepared statements.

    评论

报告相同问题?

悬赏问题

  • ¥15 数学建模招标中位数问题
  • ¥15 phython路径名过长报错 不知道什么问题
  • ¥15 深度学习中模型转换该怎么实现
  • ¥15 HLs设计手写数字识别程序编译通不过
  • ¥15 Stata外部命令安装问题求帮助!
  • ¥15 从键盘随机输入A-H中的一串字符串,用七段数码管方法进行绘制。提交代码及运行截图。
  • ¥15 TYPCE母转母,插入认方向
  • ¥15 如何用python向钉钉机器人发送可以放大的图片?
  • ¥15 matlab(相关搜索:紧聚焦)
  • ¥15 基于51单片机的厨房煤气泄露检测报警系统设计