我究竟做错了什么?准备好的声明登录

时间:2016-06-16 10:05:13

标签: php mysql login prepared-statement

这是我的login.php文件,当表单指向此页面运行代码时,屏幕表示

  

“此页面无效”

我做错了什么,我该如何解决?此外,当我有代码工作时,cookie尚未设置,这让我觉得错误就在那里。

//IF REMEMBER ME IS TURNED ON
$stmt = $conn->prepare("SELECT * FROM users WHERE email=? AND password=?");
$stmt->bind_param("ss", $SearchEmail, $SearchPassword);

// set parameters and execute
$SearchEmail = $email;
$SearchPassword = $password;
$stmt->execute();
if($stmt->fetch() == true) {
    $result = $stmt->get_result();
    while($row = $result->fetch_assoc()) {
        setcookie("SIT_name", $row['FirstName'], time()+3600*24*365*10, '/');
        setcookie("SIT_acc_type", $row['acc_type'], time()+3600*24*365*10, '/');
    }

    $stmt = $conn->prepare("UPDATE users SET last_log=? WHERE email=? AND password=?");
    $stmt->bind_param("sss", $time, $SearchEmail, $SearchPassword);
    $time = 'Time: '.date("h:i:sa").', Date: '.date("d/m/Y").'.';
    $SearchEmail = $email;
    $SearchPassword = $password;
    if ($stmt->execute()) {
        echo "Success";
        //Header('Location: ../');
    }
} else {
    echo "Wrong Username or Password!";
}

屏幕截图(来自评论部分) enter image description here

2 个答案:

答案 0 :(得分:0)

试试这个

//IF REMEMBER ME IS TURNED ON
$stmt = $conn->prepare("SELECT * FROM users WHERE email=? AND password=?");
$stmt->bind_param("ss", $SearchEmail, $SearchPassword);

// set parameters and execute
$SearchEmail = $email;
$SearchPassword = $password;
$stmt->execute();

if($stmt->fetch() == true) {
    $result = $stmt->get_result();
    while ($row = $result->fetch_array()) {
        setcookie("SIT_name", $row['FirstName'], time()+3600*24*365*10, '/');
        setcookie("SIT_acc_type", $row['acc_type'], time()+3600*24*365*10, '/');
    }

    $stmt = $conn->prepare("UPDATE users SET last_log=? WHERE email=? AND password=?");
    $stmt->bind_param("sss", $time, $SearchEmail, $SearchPassword);
    $time = 'Time: '.date("h:i:sa").', Date: '.date("d/m/Y").'.';
    $SearchEmail = $email;
    $SearchPassword = $password;
    if ($stmt->execute()) {
        echo "Success";
        //Header('Location: ../');
    }
} else {
    echo "Wrong Username or Password!";
}

答案 1 :(得分:0)

经过几个小时的代码搞砸了,我找到了一个解决方案,它不是最好的,但它会做,因为我没有时间(我' m 16,目前正在做我的GCSE)。 工作代码如下:

//IF REMEMBER ME IS TURNED ON
$stmt = $conn->prepare("SELECT FirstName, acc_type FROM users WHERE email=? AND password=?");
$stmt->bind_param("ss", $email, $password);

// set parameters and execute
$email = $OrigEmail;
$password = $OrigPassword;

$stmt->execute();
$stmt->bind_result($FirstName, $acc_type);
$stmt->store_result();

if ($stmt->num_rows == 0) 
{
    Header('Location: ../?err=1');

    $stmt->close();

    return 0;
}
else
{
    $FirstNames = array();
    $acc_types = array();

    while($stmt->fetch())
    {
        $FirstNames[] = $FirstName;
        $acc_types[] = $acc_type;

    }
    print $FirstNames[0];

    setcookie("FirstName", $FirstNames[0], time()+3600*24*365*10, '/');
    setcookie("SIT_acc_type", $acc_type[0], time()+3600*24*365*10, '/');

    $stmt = $conn->prepare("UPDATE users SET last_log=? WHERE email=? AND password=?");
    $stmt->bind_param("sss", $time, $SearchEmail, $SearchPassword);
    $time = 'Time: '.date("h:i:sa").', Date: '.date("d/m/Y").'.';
    $SearchEmail = $OrigEmail;
    $SearchPassword = $OrigPassword;
    if ($stmt->execute()) {
        //echo "Success";
        Header('Location: ../?suc=1');
    }
}