public ActionResult Create_Essay(Essay model,AccountLogin user) { DBHelper tmpDBHelper = new DBHelper(); var title = model.Title; var content = model.Content; var userID = Session["UserId"].ToString(); tmpDBHelper.SqlExcute("insert into Essay(UserId,EssayTitle,EssayContent) values('"+userID+"','"+title+"','"+content+"')"); return Redirect("../Home/Index"); }
public async Task<ActionResult> Login(AccountLogin model) { DBHelper db = new DBHelper(); var uid = model.UserId; var pwd = model.Pwd; Session["UserId"] = uid; if (db.UserCorrect(uid,pwd)) { return Redirect("~/Home/Index"); } else { Response.Write("<script>alert('用户名或密码不正确~~~ ')</script>"); return View(); } }