PHP登录脚本只会登录特定用户?

时间:2013-06-05 02:06:16

标签: php

我已经使用这个登录脚本已经很长时间了,但它现在已经破了,让我疯了。

基本上脚本只接受第一个MySQL行用户登录,登录系统将工作,但只是第一个SQL行,它似乎忽略所有行?

global_database.php

<?php 

$dbhost = 'localhost';
$dbuser = 'dealerpa_guest';
$dbpass = 'password_here';



function dbConnect($db='') {
global $dbhost, $dbuser, $dbpass;

$dbcnx = @mysql_connect($dbhost, $dbuser, $dbpass)
       or die('We are currently applying some major patches and fixes to our systems.        Please try again in 10 Minutes.');

if ($db!='' and !@mysql_select_db($db))
    die('We are currently applying some major patches and fixes to our systems. Please try again in 10 Minutes.');

return $dbcnx;
 }


?>

global_restriction.php

<?php

session_start();


include_once 'global_database.php';
include_once 'global_common.php';

$dealerUsername = isset($_POST['dealerUsername']) ? $_POST['dealerUsername'] :      $_SESSION['dealerUsername'];
$pwd = isset($_POST['pwd']) ? $_POST['pwd'] : $_SESSION['pwd'];


if(!isset($dealerUsername)) {
?>
<html>
<body>
  <form id="dealerLogin" name="dealerLogin" method="post" action="">
<input name="dealerUsername" type="text" id="dealerUsername" size="15"   class="validate[required] text-input" />

  <input name="pwd" type="password" id="pwd" size="15" class="validate[required] text-input" />

 <input name="submit" id="submit" type="submit" value="Login" class="save-button" />

</form>

<?php

exit;
 }

$_SESSION['dealerUsername'] = $dealerUsername;
$_SESSION['pwd'] = $pwd;

dbConnect("dealerpa_account");
$sql = "SELECT * FROM dealerAccount WHERE dealerUsername = '$dealerUsername' AND    dealerPassword = md5('$pwd')";

$result = mysql_query($sql);
if (!$result) {
error('A database error occurred while checking your '.
    'login details.\\nIf this error persists, please '.
    'contact us.');
}

if (mysql_num_rows($result) == 0) {
unset($_SESSION['dealerUsername']);
unset($_SESSION['pwd']);

?>

<html>
<body>
<p>Display Login page again if password is wrong</p>
</body>
<?php
exit;
}

$dealerUsername = mysql_result($result,0,'dealerUsername');
$dealerID = mysql_result($result,0,'dealerID');
?>

我已经检查了PHP设置并且注册全局变量已打开,还有什么我可以试试的。奇怪的是只有一个用户可以登录。它就像脚本没有检查整个表,只查看第一个SQL Row。

任何帮助将不胜感激。

1 个答案:

答案 0 :(得分:0)

我想这是因为你的行索引在mysql_result()中设置为0而不是mysql_result尝试mysql_fetch_assoc。它将检索关联数组中的用户信息。希望有所帮助。