Re: insert a special character

Поиск
Список
Период
Сортировка
От Christopher Kings-Lynne
Тема Re: insert a special character
Дата
Msg-id GNELIHDDFBOCMGBFGEFOMEOICBAA.chriskl@familyhealth.com.au
обсуждение исходный текст
Ответ на insert a special character  (arun kv <arun@library.iisc.ernet.in>)
Список pgsql-php
You need to go:

addSlashes($strexp) on the string before inserting it.

This will replace all 's and "s with \' and \"

You open up a massive security hole in your database if you're not
addSlashing every value that goes in...

Chris


> -----Original Message-----
> From: pgsql-php-owner@postgresql.org
> [mailto:pgsql-php-owner@postgresql.org]On Behalf Of arun kv
> Sent: Thursday, 28 March 2002 1:19 PM
> To: PGSQL
> Subject: [PHP] insert a special character
>
>
> hello,
>        I have a string with ' this symbol in the middle of  the text
>      example:-
>              " that book belong to rahul's sister"
>
>     this string is to be stored in the variable "$strexp"
>     when I am inserting this variable in database table
>     following error apperes
>
>
>    " parse error at or near "s" "
>
>     How can I read the string and store in a variable and insert the same
> into the database table ?
>
> thanks in advance ,
> with regards,
> Arun
>
>
> ---------------------------(end of broadcast)---------------------------
> TIP 2: you can get off all lists at once with the unregister command
>     (send "unregister YourEmailAddressHere" to majordomo@postgresql.org)
>


В списке pgsql-php по дате отправления:

Предыдущее
От: arun kv
Дата:
Сообщение: insert a special character
Следующее
От: Chris
Дата:
Сообщение: Re: insert a special character