SQL injection proof login script


SUBMITTED BY: Guest

DATE: Jan. 14, 2014, 8:20 p.m.

FORMAT: Text only

SIZE: 321 Bytes

HITS: 1248

  1. $mysqli = new mySqli('hostname', 'db_username', 'db_password', 'db_name');
  2. $query = sprintf("SELECT * FROM `Users` WHERE UserName='%s' AND Password='%s'",
  3. $mysqli->real_escape_string($Username),
  4. $mysqli->real_escape_string($Password));
  5. $mysqli->query($query);

comments powered by Disqus