Posts: 3,621
Name: Thierry
Location: I'm the uber Spaminator !
|
It's up to you to lock that.
Store in the session the authenticated user id, and make userpage.php callable without specifying any id.
The page just have to read the userId from the session.
that way, a user could only see his page, and no one else.
__________________
Only a biker knows why a dog sticks his head out the window.
|