prepare("SELECT COUNT(*) FROM login WHERE username = '".$_POST["login_username"]."' and pword = '".$_POST["login_password"]."'"); $db_statement->execute(); $db_statement->setFetchMode(PDO::FETCH_ASSOC); $db_returned = $db_statement->fetchAll(); $matchingUsers = $db_returned[0]['COUNT(*)']; if($matchingUsers > 0){ // User has been authenticated; set user as logged in $_SESSION['loggedInUser'] = $_POST['login_username']; unset($_SESSION['loginError']); // Move onto landing page // header('Location: /landingPage.html'); }else{ // No matching users found, send user error $_SESSION['loginError'] = 'Invalid Username or Password'; // Return to login page // header("Location: /login.php"); } }else{ // Return to login page, as credentials were not captured $_SESSION["loginError"] = "Username and Password are required, please try again"; // header("Location: /login.php"); } }catch(PDOException $e){ echo "PDOException: ".$e->getMessage(); }catch(Exception $e){ echo "Exception: ".$e->getMessage(); } ?> FriendBook Login

Please Login

User:
Password:
$GLOBALS'; echo '
';
            print_r($GLOBALS);
            echo '
'; ?>