Can anyone see a error in this:
$userid = intval($_COOKIE[bbuserid]);
$password = addslashes($_COOKIE[bbpassword]);
$result = mysql_query("SELECT username, userid FROM user WHERE userid=$userid AND MD5(CONCAT(password, 'LicenseNo')) = '$password'");
$user = mysql_fetch_array($result);
if ($user[usernmae]) {
echo "bla bla";
}else{
echo "no bla bla";
}
- If I replace $user[username] with $userid or $password, then it echo "bla bla"
|