如何检查表中是否更新了密码

时间:2013-01-30 21:10:14

标签: php

我在php中编写脚本以重置用户密码,如何检查表中是否更新了密码?例如,如果元组中的数据已更改,则发送电子邮件。请检查脚本中的注释。

 $dbcc = mysqli_connect(HOST,NAME,PASSWORD,DATABASE) or die('Error can not connect to database');

 $query = "SELECT uid,email FROM `corporate` WHERE (email='$chk_email')";
 $result = mysqli_query($dbc, $query);

 //found
 if(@mysqli_num_rows($result) == 1)
 {
                    $ROW = mysqli_fetch_array($result);
                    $sent_email = $ROW['email']; //get email
                    $id = $ROW['uid'];           //get uid

                    $new_password = generatePassword(8);//generates 8 char long random password 
                    $enc_password = md5($new_password); //encrypt

                    $statement = "UPDATE corpoorate SET password=".$enc_password." WHERE uid ='$id'";
                    $go = mysqli_query($dbcc,$statement) or die(mysqli_error());
                    mysqli_close($dbcc);

                       /*
                        * HOW DO I CHECK IF PASSWORD IS UPDATED IN THE DATABASE?
                        * IF IT IS, SEND EMAIL
                                                    * IF $go==true does not work!
                        **/
                    if($go==true){
                    $sendmessage = "We have generated a new password token for you.\n Your password is reset to ".$new_password." \n Please note that this password is not secure. Once you login, please reset your password.\n ";

                     mail($sent_email,'Password Reset',$sendmessage,'From: address@gmail.com');     
                                                                                    }                   

                     header("Location : http://limozoor.com/login/signin.php");
                     exit();    
        }//if
        mysqli_close($dbcc);

2 个答案:

答案 0 :(得分:0)

由于您的or die(mysqli_error());条件,如果密码到达执行行列,密码将始终在表中更新。

但是,我对你的if(@mysqli_num_rows($resultt) == 1)持怀疑态度,因为如果你的第一个SQL查询中有任何错误,你就会在那里压制所有错误消息(使用@),这让我觉得你甚至都没有尝试执行UPDATE语句。

答案 1 :(得分:0)

为什么不使用mysqli_affected_rows

 // remove: $go = mysqli_query($dbcc,$statement) or die(mysqli_error());
 $qry =@ mysqli_query($dbcc, $statement);
 $aff =@ mysqli_affected_rows($dbcc);
 if ($qry === true && $aff > 0) {
      mail(...);
 }

来自手册;

mysqli_query :失败时返回FALSE。对于成功的SELECT,SHOW,DESCRIBE或EXPLAIN查询,mysqli_query()将返回一个mysqli_result对象。对于其他成功的查询,mysqli_query()将返回TRUE。

mysqli_affected_rows :大于零的整数表示受影响或检索的行数。零表示没有为UPDATE语句更新的记录,没有与查询中的WHERE子句匹配的行或者尚未执行任何查询。 -1表示查询返回错误。

http://php.net/manual/en/mysqli.affected-rows.php
http://php.net/manual/en/mysqli.query.php