coolchris322
11-10-2010, 04:53 PM
Ok, first error. this
session_start();
$username = $_SESSION['myusername'];
$query = mysql_query("SELECT * FROM `community` WHERE username='$username'");
$row = mysql_fetch_array($query);
... blah blah blah ...
if($row['ban'] = "1")
echo '<td><a href=\'?change=appealban\' target=\'_self\'>Appeal Ban</a></td>';now, it echo's appeal ban even when ban = 0.
Second issue,
session_start();
$loggeduser = $_SESSION['myusername'];
include 'config.php';
$username = $_GET['name'];
$query = mysql_query("SELECT * FROM `community` WHERE username='$username'");
$row = mysql_fetch_array($query);
$query2 = mysql_query("SELECT * FROM `community` WHERE username='$loggeduser'");
$row2 = mysql_fetch_array($query2);
... blah blah blah ...
if ($loggeduser = $row['habboname']) {
echo "<a href='editprofile.php'>Edit Your Profile</a>";
}
if ($row2['rank'] = "Administrator") {
echo "<a href='edituser.php?name=".urlencode(htmlspecialchars($row['username'], ENT_QUOTES))."'>Edit User</a>";
}This 1. shows edit profile when you logout and clear your cache, but only on your profile o.O
2. echo's Edit User even when your logged out, logged in with non-admin etc.
Any help please.
session_start();
$username = $_SESSION['myusername'];
$query = mysql_query("SELECT * FROM `community` WHERE username='$username'");
$row = mysql_fetch_array($query);
... blah blah blah ...
if($row['ban'] = "1")
echo '<td><a href=\'?change=appealban\' target=\'_self\'>Appeal Ban</a></td>';now, it echo's appeal ban even when ban = 0.
Second issue,
session_start();
$loggeduser = $_SESSION['myusername'];
include 'config.php';
$username = $_GET['name'];
$query = mysql_query("SELECT * FROM `community` WHERE username='$username'");
$row = mysql_fetch_array($query);
$query2 = mysql_query("SELECT * FROM `community` WHERE username='$loggeduser'");
$row2 = mysql_fetch_array($query2);
... blah blah blah ...
if ($loggeduser = $row['habboname']) {
echo "<a href='editprofile.php'>Edit Your Profile</a>";
}
if ($row2['rank'] = "Administrator") {
echo "<a href='edituser.php?name=".urlencode(htmlspecialchars($row['username'], ENT_QUOTES))."'>Edit User</a>";
}This 1. shows edit profile when you logout and clear your cache, but only on your profile o.O
2. echo's Edit User even when your logged out, logged in with non-admin etc.
Any help please.