diff --git a/main.py b/main.py index b4b2d2b..881b883 100644 --- a/main.py +++ b/main.py @@ -257,11 +257,11 @@ async def get_user_id(get: CL.CL_GET_USER_ID,api_key: APIKey = Depends(auth.get_ @app.post("/report/addusertogroup") async def get_addusertogroup(get: CL.CL_ADD_USER_TO_GROUP,api_key: APIKey = Depends(auth.get_api_key)): - userid = database(f"SELECT ID FROM `{get.dbname}`.`Active-Directory-User` WHERE SamAccountName = {get.member} ORDER BY ID DESC LIMIT 1","","") - groupid = database(f"SELECT ID FROM `{get.dbname}`.Gruppen WHERE Name = {get.groupname}","","") + userid = database(f"SELECT ID FROM `{get.dbname}`.`Active-Directory-User` WHERE SamAccountName = '{get.member}' ORDER BY ID DESC LIMIT 1","","") + groupid = database(f"SELECT ID FROM `{get.dbname}`.Gruppen WHERE Name = '{get.groupname}'","","") if not groupid: database(f"INSERT INTO Gruppen (Name) VALUES ('{get.groupname}')","","") - groupid = database(f"SELECT ID FROM `{get.dbname}`.Gruppen WHERE Name = {get.groupname}", "", "") + groupid = database(f"SELECT ID FROM `{get.dbname}`.Gruppen WHERE Name = '{get.groupname}'", "", "") check = database(f"SELECT * FROM `{get.dbname}`.GruppenToUser WHERE UserID = {userid} AND GruppenID = {groupid}","","") if not check: database(f"INSERT INTO `{get.dbname}`.GruppenToUser (UserID,GruppenID) VALUES ({userid},{groupid})","","")