- 论坛徽章:
- 0
|
<html><head><title>后台管理</title></head><body>
<?php
$user=trim($_POST['user']);
$user = addslashes($user);
$password=trim($_POST['password']);
if(isset($user) && strlen($user) > 0)
{
$lnk = mysql_connect("localhost", "root", "dscl521");
mysql_select_db("school",$lnk) or die ("不能连接到数据库!");
//判断用户名和密码是否在正确
/*注意这里*/
$strSql="select * from user where user='$user' and password='$password'";
$result=mysql_query($strSql);// or die("读取数据库出现错误!");
$num=mysql_num_rows($result);
if($num > 0)
{
header("location:mainad.php");
}
else
{
header("location:login.php");
}
}
?>
</body></html>
---------------------------------------
sql查询语句写法错误. |
|