You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

User.php 517B

12345678910111213141516171819202122
  1. <?php
  2. namespace Blog\DB;
  3. use Blog\DB\DB;
  4. class User extends DB
  5. {
  6. public function checkUserPass($user, $pass)
  7. {
  8. // TODO : SQL injection attack!
  9. $sql = "SELECT count(*) as count FROM users WHERE username = '" . $user . "' AND password = '" . $pass . "';";
  10. $ret = $this->query($sql);
  11. $rows = $ret->fetchArray(SQLITE3_ASSOC);
  12. $rowcount = $rows['count'];
  13. if ($rowcount == 1) {
  14. return true;
  15. } else {
  16. return false;
  17. }
  18. }
  19. }