[php] Index.php?section=xx&pag=yy - No MySQL or any other database

free web hosting
Free Web Hosting > Computers & Tech > Programming > Scripting > PHP

[php] Index.php?section=xx&pag=yy - No MySQL or any other database

Alexandre Cisneiros
Hi everybody. This is my 3rd script, but this dont use MySQL
It does this: divide the site in SECTIONS and PAGES.
Benefits:
-You have to create just the text of your pages, no create ech page with the entire layout again.
-If its just the text that is included, you just have to have one page with the layout, witch is the INDEX.PHP.
-If you chanche the layout in the index.php, you DONT HAVE TO change in the other pages.

Here is the code:
CODE

<?php
//-----------------------------------------//
//ACAF Paginação                           //
//by Alexandre Cisneiros                   //
//-----------------------------------------//

$section2=$_GET['section'];
$page2=$_GET['page'];

if(file_exists("$section2/$page2.php")){
include("$section2/$page2.php");
}

else if($section2 != '' && $page2 == ''){
    if(file_exists("$section2/index.php")){
    include("$section2/index.php");
    }

}

else if($section2 == "index"  || $section2 == "home" || $section2 == "default" || $section2 == ''){
include("main_page.php");
}

else{
echo ("404: The page was not found.");
}
?>

How to use:
If you want to have a page caled 'my_book.php' in the directory 'library', you can create a link like this:
http://www.yoursite.com/index.php?section=...ry&page=my_book
or just
http://www.yoursite.com/?section=libary&page=my_book

To crate a link to the index, you have 4 options:
http://www.yoursite.com/ ----JUST THE SITE ADRESS, WITH NOTHIS AFTER IT
http://www.yoursite.com/?section=index
http://www.yoursite.com/?section=main
http://www.yoursite.com/?section=deafult
This will load a page called PRINCIPAL.PHP (lower case)

To create a link to the INDEX.PHP (lower case) of some SECTION, do this:
http://www.yoursite.com/?section=my_section
This will include the index.php of the directory MY_SECTION (lower case, again, laugh.gif )

---------REMEBER--------
-The files HAVE TO BE IN .php !
-The falis MUST

 

 

 


Reply

nightfox
Nice! This is one script I'll have to save and play with! wink.gif

I use a similar system except the site is controlled through a MySQL database to save file space.

Very nice! wink.gif

[N]F

Reply

Hercco
You shouldn't do this. And it should be obvious why.

You see, anyone can put anything in the URL, loading and executing any file with .php extension on the server. If you are on a shared hosting space some one could easily set up a malicious script to his own home directory and just use the section variable to navigate to right place and run the code. With your scipt...

To make things even worse, with PHP5. flle_exists works with URLs too. So with this script it is possible to load any script from anywhere inside your page.

And please don't forget that PHP can be used to run system commands, meaning that doing practiacally anything is possible. For instance it would be easy to delete your entire website.



So how this should be done then?

By allowing only pre-defined files to be included. You could put the allowed files (the PHP files that make up your website) in an array and use the array index in the URL GET variable to include the right page. For secions you could use multi-dimensional arrays or multiple arrays. Other option would be just use control structures like if() or switch() to load only specific pages: like this


CODE



switch($_GET['page'] )
{
   case index:
   include(index.php);
   break;

   case links:
   include(links.php);
   break;

// etc...
}

 

 

 


Reply

mastercomputers
Unfortunately your code won't work correctly.

Here's a fixed up version with a few additional things to check for:

CODE

<?php
if(isset($_GET['page'])){
    $page = (!empty(trim($_GET['page'])))? trim($_GET['page']) : false;
    if(!page){ exit(); }
    switch($page){
        case 'news':
            include('news.php') or exit('<p>Sorry, the news page is missing.</p>');
            break;
        case 'contact':
            include('contact.php') or exit('<p>Sorry, the contact page is missing.</p>');
            break;
        default:
            include('main.php');
            break;
    }
}
?>


The changes for the fix, is that we're using the switch statement to check strings, which was incorrect with Hercco's code.

Also setting the $page variable uses the ternary operator ?: which acts as a single if/else statement. e.g. it could be written as:

CODE

if(!empty(trim($_GET['page'))){
    $page = trim($_GET['page']);
}else{
    $page = false;
}


The reason for exiting the script, is because there's really nothing to do, and loading the default isn't something that they may want. However if the page requested is not one of the listed, then the default will load the main content, because obviously the changes would have been made manually, and you should have hardcoded what you wanted specified.

Cheers,


MC

Reply

Alexandre Cisneiros
Yeah. Iy`s true. I din't think about this...

So whith cases...

--==-=-=-=--=-
Sory for this...
But I`m a human xD

Reply

CrazyPensil
You're showing off by this one that much as if you were the one who discovered it. I think, most of the people visitin' that topic use this one. And this is one of the biggest PHP's advantages.

P.S. Sorry, I was a bit rude to you, but I really dislike people showin' off for nothing.

Reply

Samya
Hey nice work smile.gif

Although I have not totally understoood the script, but I have copied it and I gonna play with it now .... smile.gif

I hope that I will have no problems .....

If I came up with some problem, than I will mention here smile.gif


Regards:
Samya Khalid

Reply


Got an Opinion! Express your Views! (no registration):-
Add your Reply/ Opinion/ Views/ Comments/ Suggestion/ Questions/ Queries etc.
Posts with decent grammar & English will be accepted and please refrain from profanities.
For asking a Question, We recommend you to sign-up (for free) so that you can track the topic easily.

Nature of your Post*: Opinion/ Reply/ Comments
Question/Query
Feedback to us.
       
Name   Email
Title/Question*

(Maximum characters: 10,000)
You have characters left.
Confirm Code:

Recent Queries:-
  1. joomla /index.php/section - 128.55 hr back. (1)
Similar Topics

Keywords : , php, index, php, section, xxandpag, yy, mysql, database

  1. Letting Users Add Mysql Data With Php
    (1)
  2. Mysql Question(inserting Number From A Textfield)
    (3)
    Hey! I am trying to do a "Admin give EXP script". But I can't make it work. The value is
    not updating, but the update query is correct.( I think:P) I think the fault is here: CODE
    $expcomp=$givexpp['exp'] += $givexp; The $givexp is the
    variable for the amount of Xp the admin wants to give. the $givexpp is the variable for the
    user info (in this case, the experince he already have). The datatype for the XP in the database is
    INT. So I have no idea if it can take data from a normal textfield. If you need to see all....
  3. Making Something In Mysql Happen Only Once
    (10)
    Hey! I know I am asking alot. But much is happening theese days. Sorry if I disturb with my
    questions. The thing I am trying to do is: Ex. If the user becomes level 2, he should get 5 skill
    points. I can't do this: CODE if($userlevel=5){ mysql_query("UPDATE
    user SET skillpoints =$points+5");} because then it would update everytime the code
    was loaded. I hope you understand what I am trying to do. If not, tell me /smile.gif"
    style="vertical-align:middle" emoid=":)" border="0" alt="smile.gif" /> and i'll try to explain....
  4. Making A Link = Mysql_query
    (8)
    Hey! I will try to make this as clear as possible. how can I make the following. I have a
    list, of all members on my site. If I press on a members name(link), I will come to his profile. To
    come to his profile, I need to get out some vaule from the database, but to get out some value from
    the database, I must tell the code, how it should know who the user is (hard to understand?). To do
    that, I must add a mysql_query in the code ( I think), like "SELECT user FROM dbname WHERE
    user=link".. This is just how I think it works. I know it is kinda wrong.. but I don'....
  5. How To Make A Value In The Database Raise Every Minute.
    (50)
    Hi. I am trying to figure out how to make a value in the database raise every minute. Lets say, I
    want the HP to raise every minute. The max HP is 100. I want it to raise 5 HP/ Hour. And the player
    don't have to be online. Anyone who know how I can do it =? Thanks for any help. //Feelay....
  6. Warning: Mysql_result(): Supplied Argument Is Not A Valid Mysql Result Resource In ...
    This Is for My attack Script. (4)
    Hey. I am making a "Version 2.0" For my attack script, but I can't make it work. This is the
    error I am gettin: Warning: mysql_result(): supplied argument is not a valid MySQL result resource
    in And here is the code: CODE $dbQueryHealth = mysql_query("SELECT
    temphealth FROM characters WHERE user =".
    $_POST['atkuser']."");           $currentHealth =
    mysql_result($dbQueryHealth, 0);         $dbQueryExp =
    mysql_query("SELECT exp FROM characters WHERE user = ".$....
  7. Warning: Mysql_num_rows()
    What is the error :S (1)
    Hey! I've made a register script.. Some time ago it worked. And I ain't sure if I
    changed something since then.. The error I am getting is this: Warning: mysql_num_rows(): supplied
    argument is not a valid MySQL result resource in /home/feelay/public_html/regcheck.php on line 31
    Here is the code on theese lines: CODE $sqlCheckForDuplicate = "SELECT username FROM
    user WHERE username = '". $username ."'";                 if(
    mysql_num_rows( mysql_query( $sqlCheckForDuplicate ) ) == 0 )      ....
  8. Anyone Know Of A Really Good Mysql Class?
    Looking for something easy but full featured. (4)
    Generally speaking, when I write a script, it either utilizes the MySQL class of the parent system
    (like Mambo or Joomla) or I use basic functions and snippets to perform the database queries I need.
    I really like the Joomla database class as it allows you to simply pass a regular query string to
    it and the data is returned without the need for extra work! The Invision Power Board (IPB)
    database class which is what is used for this forum is kind of a pain to use since it wants the
    query string in a non-MySQL standard format. Nonetheless, it does work and I could u....
  9. Five Common Php Database Problems
    (0)
    I just read this excelent article from the IBM's developerWorks website, it's name is Five
    common PHP database problems . This article shows five database problems that occur in PHP
    applications as well as their solutions and include database schema design, database access, and the
    business logic code that uses the database. It is a bit older -a year ago more or less- but i
    think that can be helpful for everybody that works with PHP and MySql. Best regards,....
  10. Extracting Mysql Maths Using Php
    (2)
    Right, this is a really simple thing and it has me completely stumped. I'm working on this mini
    maths function and for some reason i cannot seem to do some simple math process using mysql. This is
    the code: (php btw), now assume that $date is actually a defined mysql date variable already
    successfully extracted. $sql = mysql_query("SELECT TO_DAYS('CURDATE()') -
    TO_DAYS('$date')"); while ($row = mysql_fetch_array($sql)){ $diff =
    $row ; } Can anyone spot what im doing wrong becuase im just thrown by it.....
  11. Too Many Connections?
    mysql_connect() (4)
    I uploaded my PHP game yesterday, and most of my friends tried it out. After a while, I tried to
    play as well but it said that mysql_connect() had too many connections already. Can anyone tell me
    how to increase the amount of connections or maybe the total amount of connections allowed?....
  12. Php/mysql And Manual Page Caching?
    (4)
    I am hopefully about to attempt this on the news page of my new site. Every bit counts as far as
    I'm concerned and not having "news" portion of my news page re-php and re-mysql everything where
    there is no chance seems like a waste. I'm looking for good articles, information or tips on
    the process (if I fail to find any good information as I'm looking through now). The way I see
    it right now, I have most of my page split up in header, content (some static html in here before
    dynamic contend and then a little more static html to close it off) and then a foo....
  13. Sql Injection Prevention (passing Numerical Data Across Pages).
    PHP/mySQL (9)
    Even if your building something as simple as a basic news page for your website, if your passing
    along url variable strings like (mysite/index.php?page=1), you may be vulnerable to SQL injection
    attacks. For cases like these (passing numerical data in url strings), I have a handy dandy little
    function to thwart these attempts silly: CODE // For checking if value is a number, if not
    return 1. function isNum($val) {   if (!is_numeric($val)) {
    $val = 1; }   return ($val); } I have this function, within my ....
  14. Php Mysql Errors
    Fetching arrays (2)
    I am deciding to make a Multiplayer Online RPG type game. I will be building it off of PHP and MySQL
    to ensure makimum compatibility with Astahost's services (and it makes it easier /wink.gif"
    style="vertical-align:middle" emoid=";)" border="0" alt="wink.gif" />). I have a database setup with
    1 table to hold user data and I have the login system setup properly as well as the registration
    form (obviously). All games of course have something similar to gold, units and points. Because
    this is a turn-based game, I have turns. Now for the problem: I am trying to echo ....
  15. How To Show Serial Nums In PHP Table For Contents Of MySQL DB
    Serial Numbering for output contents of mysql in php table (4)
    Hello there, I'm looking for some education. How would you show the serial numbering for
    outputted contents of mysql database. I used a table created in PHP to output content (i.e. an
    alumni database) and I created a column for S/N, so that at a glance anyone can tell how many
    members have registered. Thanks house. Neyoo....
  16. PHP & MySQL: Displaying Content From A Given ID
    (6)
    Okay so I got this sample link (not working): http://www.acosta.com/joo.asp?id=654 Now suppose
    I have a PHP file that would use MySql in order to get all values in the row where id 654 is found.
    Here's a sample DB: Table: demnyc ______________________________________ | id |
    Name | Age | Email | *----------------------------------------------------* | 1
    | Albert | 17 | no email |
    *----------------------------------------------------* | 2 | YaPow | 888 |
    no email | |__________....
  17. Re-order MySQL Table
    (11)
    Hello you all, I've got a question /smile.gif" style="vertical-align:middle" emoid=":)"
    border="0" alt="smile.gif" /> Let's say I have a database width the table "news". It contains
    about 10 items which is ordered by the field "id". Now from my admin page i do this: CODE
    <?PHP mysql_query("DELETE FROM news WHERE id=4"); ?> And a few days later
    i do: CODE <?PHP mysql_query("DELETE FROM news WHERE id=7"); ?> Now
    there are two gaps in the table => 1, 2, 3, 5, 6, 8, 9, 10 (no 4 and 7). It want to real....
  18. Need MySQL Alternative To The Syntax "or die()"
    (8)
    Hello again /smile.gif" style="vertical-align:middle" emoid=":)" border="0" alt="smile.gif" />
    I'm facing a problem with PHP and MySQL... I want, when a MySQL error occurs, to let the script
    continue. Here's the script: CODE $query = "SELECT * FROM menus ORDER BY id
    ASC"; $menus_result = mysql_query($query) or
    die("Error!"); while(
    $menu=mysql_fetch_array($menus_result) ) {    echo
    $menu['name']."<br />"; } Now if the table "menus" doesn&....
  19. Need Help With 2-Way Password Encryption
    How to properly store passwords in a database (8)
    Every article I've read on the internet so far suggests using MD5 or SHA1 to "encrypt" passwords
    in a database, but MD5 and SHA1 are hashing functions; they only go one way. So then how do I let
    users know what their password is if they forget it? I suppose I need a two-way encryption method,
    right? Can somebody please tell me what the easiest way to solve my problem is with PHP and MySQL?
    Thanks, Trevor....
  20. Need Help With Php/mysql And Web Servers Such As Asta's.
    (4)
    Within my site I have built my own basic forum using PHP/Mysql, I always test locally now both using
    EasyPHP and WAMP5 which both give me no problems what so ever. But when I tryed to run the exact
    same code on Asta's hosting services (and possible another I used to use) when creating a new
    thread or adding a reply to an existing one it *sometimes* adds an additional thread/reply as a
    Guest (someone not signed in) with an empty message. This would lead me to believe that somehow the
    page is being refreshed and the variables sent to the database update php file are ....
  21. What Database Do You Use With PHP
    Regarding PHP supported database format (5)
    There are different database backends supported by PHP. However, most of us probably use MySQL and
    the books on PHP mostly use MySQL as the backend database. These are the currently supported
    database format: 1. dBase 2. FrontBase (functional since DB 1.7.0) 3. InterBase (functional since
    DB 1.7.0) 4. Informix 5. Mini SQL (functional since DB 1.7.0)6. Microsoft SQL Server (NOT for
    Sybase. Compile PHP --with-mssql) 6. MySQL (for MySQL 7. MySQL (for MySQL >= 4.1) (requires PHP 5)
    (since DB 1.6.3) 8.Oracle 7/8/9 9. ODBC (Open Database Connectivity) 10. PostgreSQL 11. SQL....
  22. Important: Basics Of Using PHP And MySQL
    (9)
    I generally notice confusion with new users to PHP and or MySQL and first of all I believe that
    unlike HTML which is automatically associated with a IE browser in a Microsoft system. HTML is
    automatically rendered with whatever browser is the default browser, be it Internet Expolrer Firefox
    Netscape or any other browser that has been set. PHP is a different matter to view the output of a
    PHP file it must be run on a webserver, and if you do not have one set up on your local PC it simply
    will not work. (Note serverside langauge requies a server) HTML is client side and ....
  23. How Do You Create A Secure Loging?
    with PHP and mySQL (4)
    I've read a few articles, and looked up the code of certain files and some of them seem to work
    differently. I'm trying to create a login script, which would require PHP and mySQL to run,
    however, I'm not quite sure how to approach it since I'm only just learning PHP. I'd
    like to know, what is the most secure and effective login? I've heard you can add a salt to
    encrypted passwords, etc, and well as using sessions (sid). It's just like to know what methods
    are best for creating a secure login script. Thank yo ufor readin this. ....
  24. [PHP + MySQL] Encrypting Data
    To protect the password of your DB, for example. (9)
    Hi! This is my 2nd code of PHP + MySQL. This code is VERY simple: it encript the data in the
    MySQL DB. Here we go! ------------------------------------------------------------------------
    CODE <?php $password = "abc"; $new_password = md5($password);
    echo $new_password; ?> The password "abc" was codfied using md5() This will be:
    900150983cd24fb0d6963f7d28e17f72 CODE <?php $normal_pass = "abc";
    $encripted_pass = "900150983cd24fb0d6963f7d28e17f72"; if(md5($norm....
  25. [PHP + MySQL] Separating The Results By Pages
    Simple code (0)
    Hi! I will post here a code for separating the results of MySQL in pages. You ask: Why separete?
    I answer: Imagin that you have 1523 results to display. I dont have to say anything. =P Here is it.
    ------------------------------------------------------------------- CODE <?php $conect
    = mysql_connect("host","user","password"); $select_db =
    mysql_select_db("database"); $query = "SELECT * FROM mytable";
    $results = "15"; //Number of results displayed per page. if (!$p....
  26. Need Some Help Using PHP & MySQL
    (4)
    I wonder if its possible or if anyone know how to : I'm making a website for my soccer team
    and every week there are new news, but in the index file i only show some part of the text and the
    rest of the news is in Stored in Database, of course that all news are inside mysql database, i only
    set a script to get from the Database the text and title and so. My doubt is if there is some how to
    attach a link to that news and when i run the link, this show me another page but with FULL news
    text ? i Read something like, i've to create a cicle CODE <....
  27. Printing Out A Table
    PHP and MySQL (6)
    I've been designing an online registration page for my univ. The adminstrative section is going
    to take care of the registration and they've asked me if I could incorporate a PRINT link on the
    page which displays the details of the students so that they can take a printout directly of just
    the table and not the extra links and decorations on the page without having to copy the whole thing
    into excel or something. Does anyone have any ideas of how to do this? To make myself more clear,
    here's a screenshot of the admin page: I want a printout of just the....
  28. Need For PHP/MySQL Creator
    (1)
    need for PHP/MYSQL creator I need a PHP/MYSQL application creator that have php function and
    create php codes automatically, for example:Macromedia Dreamweaver MX 2004 have this ability to
    create php applications already i downloaded PHP designer but it didn`t applications ....
  29. Need Help With A PHP - MySQL Registration Script
    Wont INSERT into the database (13)
    hey well can some one helpme make this code work it won't INSERT INTO THE DATABSE CODE
    <?php # register1.php # common include file to MySQL include("DB.PHP");
    $Username=$_POST['Username'];
    $Password=$_POST['Password'];
    $Name=$_POST['Name']; $Last=$_POST['Last'];
    $Sex=$_POST['Sex']; $Month=$_POST['Month'];
    $Day=$_POST['Day']; $Year=$_POST['Year&....
  30. MySQL & PHP coding
    (9)
    So it seems as though the php docs make it very clear that mysql and mysqli functions will all
    connect to the database as a latin1 client. Although i have my server set up with utf8 databases,
    tables and fields and the default client connection is utf8, php still connects as latin1. My
    xhtml forms and pages are all utf-8, so when i post utf8 data and insert it into the database the
    connection assumes that incoming data is latin1 and the data that gets placed in the database is
    invalid. phpMyAdmin seems to be able to view, add, edit, and retrieve utf8 strings in the d....

    1. Looking for , php, index, php, section, xxandpag, yy, mysql, database

Searching Video's for , php, index, php, section, xxandpag, yy, mysql, database
Similar
Letting
Users Add
Mysql Data
With Php
Mysql
Question(ins
erting
Number From
A Textfield)
Making
Something In
Mysql Happen
Only Once
Making A
Link =
Mysql_query
How To Make
A Value In
The Database
Raise Every
Minute.
Warning:
Mysql_result
(): Supplied
Argument Is
Not A Valid
Mysql Result
Resource In
... - This
Is for My
attack
Script.
Warning:
Mysql_num_ro
ws() - What
is the error
:S
Anyone Know
Of A Really
Good Mysql
Class? -
Looking for
something
easy but
full
featured.
Five Common
Php Database
Problems
Extracting
Mysql Maths
Using Php
Too Many
Connections?
-
mysql_connec
t()
Php/mysql
And Manual
Page
Caching?
Sql
Injection
Prevention
(passing
Numerical
Data Across
Pages). -
PHP/mySQL
Php Mysql
Errors -
Fetching
arrays
How To Show
Serial Nums
In PHP Table
For Contents
Of MySQL DB
- Serial
Numbering
for output
contents of
mysql in php
table
PHP &
MySQL:
Displaying
Content From
A Given ID
Re-order
MySQL Table
Need MySQL
Alternative
To The
Syntax
"or
die()"
Need Help
With 2-Way
Password
Encryption -
How to
properly
store
passwords in
a database
Need Help
With
Php/mysql
And Web
Servers Such
As
Asta's.
What
Database Do
You Use With
PHP -
Regarding
PHP
supported
database
format
Important:
Basics Of
Using PHP
And MySQL
How Do You
Create A
Secure
Loging? -
with PHP and
mySQL
[PHP +
MySQL]
Encrypting
Data - To
protect the
password of
your DB, for
example.
[PHP +
MySQL]
Separating
The Results
By Pages -
Simple code
Need Some
Help Using
PHP &
MySQL
Printing Out
A Table -
PHP and
MySQL
Need For
PHP/MySQL
Creator
Need Help
With A PHP -
MySQL
Registration
Script -
Wont INSERT
into the
database
MySQL &
PHP coding
advertisement




[php] Index.php?section=xx&pag=yy - No MySQL or any other database



 

 

 

 

ADD REPLY / Got an Opinion! a humble request :-) RAPID SEARCH! Free Hosting [X]
Express your Opinions, Thoughts or Contribute more info. to help others.
Ask your Doubts & Queries to get answers, So that "Together We can help others!"
Register FREE for AD-FREE forum, Create your own topics, Ask Questions, track topics, setup subscriptions & notifications and Get a Free Website w/ Email and FTP.
500MB Space *No Ads*, CPanel, FTP, PHP, MySQL, EMails - 100% FREE