[Release] New Site
#6

Ok so how's this. I also added the ctype_digit(); and it worked, if i change the id to something other than a number it will give you an error.

 

<?
//Start session
session_start();

include "settings.php";

// Get Login ID
$accid = $_SESSION['SESS_ACCOUNT_ID'];
?>
<?
if(!isset($_SESSION['SESS_MEMBER_ID']) || (trim($_SESSION['SESS_MEMBER_ID']) == '')) {
} else {

?>
<?php
$connect = mysql_connect($server_ip, $user, $password) or die(mysql_error());
mysql_select_db($database) or die(mysql_error());

// get value of id that sent from address bar
$id = mysql_real_escape_string( $_GET['id'] );

if( ctype_digit( $id ))
{

// Delete data in mysql from row that has this id
$sql="DELETE FROM t_characters WHERE a_index='$id' AND a_user_index = '$accid'";
$result=mysql_query($sql);

// if successfully deleted
if($result){
echo "Delete Successful you will be redirected in 2 seconds.</a>";
}

else {
echo "ERROR";
}
?>

<meta HTTP-EQUIV="REFRESH" content="1; url=../index.php?page=20">
<?
}
else
{
echo "<font size= '2' color='#FF0000'>That is not a number!</font>";
}
?>

<?
die();
}

?>
<font size= '2' color='#FF0000'>You need to log in first!</font>
<meta HTTP-EQUIV="REFRESH" content="1; url=../index.php">
<?php
// close connection
mysql_close();
?>

 

With this instead I wasn't able to delete someone else's character.



Messages In This Thread
[No subject] - by Blackfire - 08-08-2012, 11:14 AM
[No subject] - by Wizatek - 08-08-2012, 11:57 AM
[No subject] - by Koko - 08-08-2012, 12:12 PM
[No subject] - by Blackfire - 08-08-2012, 02:40 PM
[No subject] - by Wizatek - 08-08-2012, 02:46 PM
[No subject] - by Blackfire - 08-08-2012, 03:00 PM
[No subject] - by Wizatek - 08-08-2012, 04:00 PM
[No subject] - by Blackfire - 08-08-2012, 05:31 PM
[No subject] - by Douglas Farias - 08-08-2012, 08:37 PM
[No subject] - by blade5000 - 08-09-2012, 02:57 AM
[No subject] - by iFlash - 08-09-2012, 03:08 AM
[No subject] - by Blackfire - 08-09-2012, 03:16 AM
[No subject] - by Exonaty - 08-09-2012, 05:23 AM
[No subject] - by Blackfire - 08-09-2012, 05:48 AM
[No subject] - by Cruzaders - 08-10-2012, 05:56 PM
[No subject] - by Douglas Farias - 08-10-2012, 06:00 PM
[No subject] - by Blackfire - 08-10-2012, 06:07 PM
[No subject] - by Cruzaders - 08-10-2012, 06:16 PM
[No subject] - by Blackfire - 08-10-2012, 06:17 PM
[No subject] - by Spezzato - 08-17-2012, 08:21 PM
[No subject] - by Blackfire - 08-17-2012, 08:30 PM
[No subject] - by Spezzato - 08-18-2012, 11:48 AM
[No subject] - by fliegendeflasche97 - 08-18-2012, 10:49 PM
[No subject] - by fliegendeflasche97 - 08-18-2012, 11:35 PM
[No subject] - by Blackfire - 08-19-2012, 12:40 AM
[No subject] - by XaMaX - 08-20-2012, 10:52 AM
[No subject] - by Blackfire - 08-20-2012, 06:52 PM
[No subject] - by Cisiu - 08-26-2012, 10:59 PM
[No subject] - by Blackfire - 08-27-2012, 12:35 AM
[No subject] - by xNiceEinzx - 08-27-2012, 12:01 PM
[No subject] - by Blackfire - 08-27-2012, 01:15 PM
[No subject] - by Blackfire - 08-27-2012, 01:55 PM
[No subject] - by Darquise - 09-02-2012, 10:02 PM
[No subject] - by Sutton - 11-20-2012, 10:27 PM
[No subject] - by dade92 - 11-25-2012, 12:41 PM
[No subject] - by Blackfire - 11-25-2012, 06:29 PM
[No subject] - by extreme - 11-25-2012, 07:37 PM
[No subject] - by peterkosta12 - 01-09-2013, 03:45 PM
[No subject] - by Sycheras - 01-31-2013, 02:07 PM
[No subject] - by mims514 - 04-01-2013, 10:24 AM
[No subject] - by MrSKULL - 05-04-2013, 02:21 PM

Forum Jump:


Users browsing this thread: 1 Guest(s)