I'm trying to make the following code work but I can't reach the execute()
line.
$mysqli = $this->ConnectLowPrivileges();
echo 'Connected<br>';
$stmt = $mysqli->prepare("SELECT `name`, `lastname` FROM `tblStudents` WHERE `idStudent`=?");
echo 'Prepared and binding parameters<br>';
$stmt->bind_param('i', 2 );
echo 'Ready to execute<br>'
if ($stmt->execute()){
echo 'Executing..';
}
} else {
echo 'Error executing!';
}
mysqli_close($mysqli);
The output that I get is:
Connected
Prepared and binding parameters
So the problem should be at line 5, but checking the manual of bind_param()
I can't find any syntax error there.
Your actual problem is not at line 5 but rather at line 1.
You are trying to use unusable driver.
While PDO does exactly what you want.
After all the years passed since this answer has been written, a new PHP feature emerged, called "argument unpacking". So, since version 5.6 you can pass a value into bind_param:
But still you have a trouble with getting your data back out of a prepared statement :)
here it is just a simple explaination
declare a variable to be bind
When binding parameters you need to pass a variable that is used as a reference:
See the manual: http://php.net/manual/en/mysqli-stmt.bind-param.php
Note that
$var
doesn't actually have to be defined to bind it. The following is perfectly valid: