Advertisement
sayang04

Login test error

Jan 22nd, 2019
100
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 0.56 KB | None | 0 0
  1. <?php
  2. $id = $_GET['id'];
  3. $id = str_replace(' ', '', $id);
  4. if (!preg_match('/^\d+$/m', $id)) {
  5.     die('Lucifear!!!');
  6. }
  7. $id = preg_replace('/^[^\d]+$/', '', $id);
  8.  
  9. $query = "SELECT * FROM `users` WHERE `id`=({$id})";
  10. $db = new PDO('mysql:dbname=pentest;host=127.0.0.1', 'pentest', '***');
  11. if (!$result = $db->query($query)) {
  12. die('Lucifear!!');
  13. }
  14. $records = $result->fetchAll(PDO::FETCH_OBJ);
  15.  
  16. foreach ($records as $record): ?>
  17. <strong>Username:</strong> <?=$record->user?><br />
  18. <strong>Passname:</strong> <?=$record->pass?>
  19. <hr>
  20. <?php endforeach; ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement