drzil26260 2014-10-05 11:33
浏览 84
已采纳

PHP将数据从表单输入到SQL数据库中

Hello I wish to input some data from a HTML form in my website into a SQL database. Here is my database so far.

  • 写回答

1条回答 默认 最新

  • duan3601 2014-10-05 11:51
    关注

    You could easily just call the addNewUser() function passing the required parameters as:

    addNewUser($connect,$username,$password,$dbtable);
    

    A better usage example would be to first check that the form has been already submitted to prevent any direct access or empty records and PHP warnings by checking that form fields have been submitted, ie.

    if(isset($_POST["username"]) && isset($_POST["password"]))
    {
        $username=$_POST['username'];
        $password=$_POST["password"];
    
        addNewUser($connect,$username,$password,$dbtable);
     }
    

    Other than that this seems to be a very basic example and also a bad practise on how to implement a new insert in the database so be sure not to use any of this in a production environment. IE:

    • No input filtering.
    • Trying to "imitate" an Auto Increment field for the user
    • Vulnerable to SQL injection and even prone to fail by accident if say a user tries to register with a username or password that contains a quote
    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 seatunnel-web使用SQL组件时候后台报错,无法找到表格
  • ¥15 fpga自动售货机数码管(相关搜索:数字时钟)
  • ¥15 用前端向数据库插入数据,通过debug发现数据能走到后端,但是放行之后就会提示错误
  • ¥30 3天&7天&&15天&销量如何统计同一行
  • ¥30 帮我写一段可以读取LD2450数据并计算距离的Arduino代码
  • ¥15 飞机曲面部件如机翼,壁板等具体的孔位模型
  • ¥15 vs2019中数据导出问题
  • ¥20 云服务Linux系统TCP-MSS值修改?
  • ¥20 关于#单片机#的问题:项目:使用模拟iic与ov2640通讯环境:F407问题:读取的ID号总是0xff,自己调了调发现在读从机数据时,SDA线上并未有信号变化(语言-c语言)
  • ¥20 怎么在stm32门禁成品上增加查询记录功能