PHP Code:
<?php
}
elseif(isset($_GET["error"]) && $_GET["error"] == "ban")
{
if(isset($_GET["user"]))
{
$_GET["user"] = mysql_real_escape_string($_GET["user"]);
$query = mysql_query("SELECT * FROM bans WHERE value = '".$_GET["user"]."' AND expire > UNIX_TIMESTAMP() ORDER BY expire DESC LIMIT 1");
}
else if(isset($_GET["ip"]))
{
$_GET["ip"] = mysql_real_escape_string($_GET["ip"]);
$query = mysql_query("SELECT * FROM bans WHERE value = '".$_GET["ip"]."' AND expire > UNIX_TIMESTAMP() ORDER BY expire DESC LIMIT 1");
}
$ban = @mysql_fetch_array($query);
?>
Why do you make variables that doesn't even need to be there?....
PHP Code:
<?php
}
elseif(isset($_GET["error"]) && $_GET["error"] == "ban")
{
if(isset($_GET["user"]))
{
$query = mysql_query("SELECT * FROM bans WHERE value = '". mysql_real_escape_string($_GET["user"]) ."' AND expire > UNIX_TIMESTAMP() ORDER BY expire DESC LIMIT 1");
}
else if(isset($_GET["ip"]))
{
$query = mysql_query("SELECT * FROM bans WHERE value = '". mysql_real_escape_string($_GET["ip"]) ."' AND expire > UNIX_TIMESTAMP() ORDER BY expire DESC LIMIT 1");
}
$ban = @mysql_fetch_array($query);
?>
Does the same thing as yours but you have created some variables that doesn't even need to be there?