Welcome to My Guestbook
if (!$submitted) { ?>
Please Sign Your entry
>
Name:
>
E-mail:
>
Message (
No HTML
):
} else { check_var ('fullname'); check_var ('msg'); check_var ('email'); $res = mysql_query ("insert into guestbook (name, email, msg, remote_host) values " . "('" . addslashes ($_REQUEST['fullname']) . "', '" . addslashes ($_REQUEST['email']) . "', '" . addslashes (htmlspecialchars ($_REQUEST['msg'])) . "', '" . addslashes ($_SERVER['REMOTE_ADDR']) . "') "); if ($res === false) { die ("Cannot insert entry into guestbook: " . mysql_error() . "\n"); } print "
Entry successfully added
\n"; } ?>
/* Display entries */ $qh = mysql_query ("select name, email, msg from guestbook order by entry_id desc"); if ($qh === false) { die ("Cannot select entries from guestbook: " . mysql_error() . "\n"); } function disprow ($id, $val) { $id = stripslashes ($id); $val = stripslashes ($val); print "
\n"; print "
$id
:
\n"; print "
$val
\n"; print "
\n"; print "
\n"; } print "
\n"; while ($row = mysql_fetch_array($qh, MYSQL_ASSOC)) { disprow ('Name', $row['name']); disprow ('Email', $row['email']); disprow ('Message', $row['msg']); } print "
"; ?>