Go Back   vb.org Archive > vBulletin 3 Discussion > vB3 Programming Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 03-03-2005, 07:02 PM
vbted vbted is offline
 
Join Date: Apr 2004
Posts: 21
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default no match found query

OK, this works for me but if no match is found in the four fields I get an error. I would like $formpmid to equal "1" if no match is found. any help would be great. I'm ob a sql noob. -Ted

Any other comments on the code would be great also.


PHP Code:
////////////////////////////////////////////////
if ($normalanswer1 == ''){
    
$formpmid "1"; }
else {
$result $DB_site->query("SELECT userid
                           FROM " 
TABLE_PREFIX "userfield
                           WHERE (field19 = '
$normalanswer1') OR (field26 = '$normalanswer1') OR (field15 = '$normalanswer1') OR (field25 = '$normalanswer1')");
while (
$usersid $DB_site->fetch_array($result)) 
    {  
    
$formpmid $usersid['userid'];
    }
}
////////////////////////////////////////////////// 
Reply With Quote
  #2  
Old 03-04-2005, 05:36 AM
Marco van Herwaarden Marco van Herwaarden is offline
 
Join Date: Jul 2004
Posts: 25,415
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

PHP Code:
$formpmid 1;  
if (
$normalanswer1 != ''){ 
$result $DB_site->query("SELECT userid 
                           FROM " 
TABLE_PREFIX "userfield 
                           WHERE (field19 = '
$normalanswer1') OR (field26 = '$normalanswer1') OR (field15 = '$normalanswer1') OR (field25 = '$normalanswer1')"); 
while (
$usersid $DB_site->fetch_array($result)) 
    {   
    
$formpmid $usersid['userid']; 
    } 

Something like this i guess. But you don't say what error you are getting.
Reply With Quote
  #3  
Old 03-04-2005, 06:53 PM
vbted vbted is offline
 
Join Date: Apr 2004
Posts: 21
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Thanks! works perfect. I geuass when no match was found in the db the code didn't know how to handle it. much tanx. -Ted
Reply With Quote
  #4  
Old 03-04-2005, 06:54 PM
filburt1 filburt1 is offline
 
Join Date: Feb 2002
Location: Maryland, US
Posts: 6,144
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

You should be aware that you have a dangerous SQL injection problem. You need to wrap all of the variables in the query with addslashes().

http://www.php.net/addslashes
Reply With Quote
  #5  
Old 03-04-2005, 07:08 PM
vbted vbted is offline
 
Join Date: Apr 2004
Posts: 21
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Like this??

PHP Code:
$formpmid 1;   
if (
$normalanswer1 != ''){ 
$result $DB_site->query("SELECT userid 
                           FROM " 
TABLE_PREFIX "userfield 
                           WHERE (field19 = '" 
addslashes($normalanswer1) . "') 
          OR (field26 = '" 
addslashes($normalanswer1) . "') 
          OR (field15 = '" 
addslashes($normalanswer1) . "') 
          OR (field25 = '" 
addslashes($normalanswer1) . "')"); 
while (
$usersid $DB_site->fetch_array($result)) 
    {    
    
$formpmid $usersid['userid']; 
    } 

Reply With Quote
  #6  
Old 03-04-2005, 09:17 PM
filburt1 filburt1 is offline
 
Join Date: Feb 2002
Location: Maryland, US
Posts: 6,144
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Yes, that's correct.

BTW, the parenthesis in the query aren't necessary, although they don't hurt either.
Reply With Quote
  #7  
Old 03-04-2005, 09:31 PM
vbted vbted is offline
 
Join Date: Apr 2004
Posts: 21
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

thanks for the input.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 02:31 PM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.03795 seconds
  • Memory Usage 2,230KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (3)bbcode_php
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (7)post_thanks_box
  • (7)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (7)post_thanks_postbit_info
  • (7)postbit
  • (7)postbit_onlinestatus
  • (7)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete