PHP ini显示错误

时间:2010-12-29 02:04:36

标签: php mysql database passwords md5

我之前发布了一个关于此的问题,但需要更多帮助,因为我已经缩小了问题范围。以下是我正在使用的代码。我收到两个错误,我也包括了这些行,但我不知道问题是什么,我是新的,请帮忙!

守则:

//Checks if there is a login cookie

if(isset($_COOKIE['ID_my_site']))
    //if there is, it logs you in and directes you to the members page
{ 
    $email = $_COOKIE['ID_my_site']; 
    $pass = $_COOKIE['Key_my_site'];
    $check = mysql_query("SELECT * FROM users WHERE email = '$email'") or die(mysql_error());

    while($info = mysql_fetch_array( $check )) 
    {
        if ($pass != $info['password']) 
        {
        }
        else
        {
            header("Location: home.php");
        }
    }
}

//if the login form is submitted 

if (isset($_POST['submit']))
{ // if form has been submitted
  // makes sure they filled it in

    if(!$_POST['email'] | !$_POST['password'])
    {
        die('You did not fill in a required field.');
    }

// checks it against the database

    if (!get_magic_quotes_gpc())
    {
        $_POST['email'] = addslashes($_POST['email']);
    }

    $check = mysql_query("SELECT * FROM users WHERE email = '".$_POST['email']."'") or die(mysql_error());

    //Gives error if user dosen't exist

    $check2 = mysql_num_rows($check);

    if ($check2 == 0)
    {
        die('That user does not exist in our database. <a href=add.php>Click Here to Register</a>');
    }

    while($info = mysql_fetch_array( $check ))  
    {
        $_POST['password'] = md5($_POST['password']);
        $_POST['password'] = $_POST['password'];

        //gives error if the password is wrong

        if ($_POST['password'] != $info['password'])
        {
            die('Incorrect password, please try again');
        }
        else 
        { 
            // if login is ok then we add a cookie 
            $_POST['email'] = stripslashes($_POST['email']); 
            $hour = time() + 3600; 
            setcookie(ID_my_site, $_POST['email'], $hour); 
            setcookie(Key_my_site, $_POST['password'], $hour);   

            //then redirect them to the members area 

            header("Location: home.php"); 
        } 

    } 

} 
else 
{    
Error # 1:  
    if ($pass != $info['password']) 
Error # 2: 
    if ($_POST['password'] != $info['password']) {

1 个答案:

答案 0 :(得分:3)

通常,您需要在尝试访问索引之前测试索引...

这样的东西
if ((isset($info['password'])) && $info['password'] != $pass) 

OR(虽然通常被忽视)抑制错误

if (@ $info['password'] != $pass)