You are here: Re: Saving a form to the server « PHP Programming Language « IT news, forums, messages
Re: Saving a form to the server

Posted by Dave Kelly on 05/13/07 23:26

Mike P2 wrote:
> ?>
>
> Let's assume you made $_REQUEST['name'] and $describe11 safe for the
> file system.
> ?>
You should make that
> variable safe for the file system before using it, though.

To isolate a question. I have searched for make variable safe and this
is what I found. Is this what you intended by the above statements?

<?php //quote-smart.php
// Quote variable to make safe
function quote_smart($value) {
// Stripslashes
if (get_magic_quotes_gpc()) {
$value = stripslashes($value);
}
// Quote if not integer
if (!is_numeric($value) || $value[0] == '0') {
$value = "'" . mysql_real_escape_string($value) . "'";
}
return $value;
}
?>


--
A little rum in the morning coffee. Just to clear the cobwebs, ya know.

 

Navigation:

[Reply to this message]


Удаленная работа для программистов  •  Как заработать на Google AdSense  •  England, UK  •  статьи на английском  •  PHP MySQL CMS Apache Oscommerce  •  Online Business Knowledge Base  •  DVD MP3 AVI MP4 players codecs conversion help
Home  •  Search  •  Site Map  •  Set as Homepage  •  Add to Favourites

Copyright © 2005-2006 Powered by Custom PHP Programming

Сайт изготовлен в Студии Валентина Петручека
изготовление и поддержка веб-сайтов, разработка программного обеспечения, поисковая оптимизация