Sunda Cyber Army


* Sunda Cyber Army 2k17 *
Indonesia Defacer ~


Path : /home/dent/public_html/_demos/w3/
File Upload :
Current File : /home/dent/public_html/_demos/w3/results.php

<?php
echo "debug2<hr>";
var_dump($_REQUEST);

echo "<hr><br>";

echo "genre is " .  $_REQUEST["genre"];

// 1. connect to db
$host = "webdev.iyaclasses.com";
$userid = "dent";
$userpw  = "pw";
$db = "dent_dvd";

include "../pdloginvariables.php";

// $userpw = "bad";

$dbconnection = new mysqli($host, $userid, $userpw, $db);



// test db connection

if($dbconnection -> connect_errno) {
    echo "DB CONNECTION ERROR!<br> ";
    echo $dbconnection -> connect_error;
    exit();
} else {
    echo "GOOD CONNECTION";
}


// write a sql statement
$sql = "SELECT * from movieView WHERE genre = '" . $_REQUEST["genre"] .  "'";

echo "<br>" . $sql . "<br>";
// create a "results" variable, set it to submitting the SQL above
$results = $dbconnection -> query($sql);

// test $results
if(!$results) {
    echo "DB QUERY PROBLEM!!!!<hr>";
    echo $dbconnection -> error;
    exit();
} else {
    echo "RESULTS!!!";
}


echo "<br><br>There are " . $results->num_rows . " records matching your search on " .
    $_REQUEST["genre"] .  ".<br><br>";


while($currentrow = $results -> fetch_assoc()) {
    echo $currentrow["title"] . " Rated "  . $currentrow["rating"] . "<br>";
//    var_dump($currentrow);
}
/*
    $dbconnection = new mysqli = (
                            "webdev.iyaclasses.com",
                            "dent",
                            "pw",
                            "dent_dvd"
);
*/

// 2. write and submit SQL to db

// 3. parse results from db