<?php
+
require 'db.inc';
+ require 'common.inc';
$mnumber = $_POST['mnumber'];
$password = $_POST['password'];
+ if(! is_numeric($mnumber)) {
+ block("red", "Matr.nummer has to be numeric!");
+ exit;
+ }
+
if($db->query("SELECT COUNT(*) FROM students WHERE mnumber = $mnumber")->fetch(PDO::FETCH_NUM)[0] == 0) {
print '<table bgcolor="red">';
print '<tr><th><b><font color="white">Mat.nummer not found</font></b></th><tr>';