From 54b6ba84ed433c2e501bda1bcac242fbeeaa86d0 Mon Sep 17 00:00:00 2001 From: henyxia Date: Tue, 10 Feb 2015 22:50:45 +0100 Subject: [PATCH] Need to magic quote this later --- sendNews.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/sendNews.php b/sendNews.php index e38a93b..8641aee 100644 --- a/sendNews.php +++ b/sendNews.php @@ -8,5 +8,5 @@ if(!mysql_select_db('crep', $link)) echo 'Selection de la base de donnees impossible'; exit; } -$requete = "INSERT INTO `crep`.`news` (`pk` ,`fk_author` ,`created` ,`title` ,`content`) VALUES (NULL , '2', CURDATE(), ".base64_decode($_POST["title"]).", ".base64_decode($_POST["content"]).")"; +$requete = "INSERT INTO `crep`.`news` (`pk` ,`fk_author` ,`created` ,`title` ,`content`) VALUES (NULL , '2', CURDATE(), \"".base64_decode($_POST["title"])."\", \"".base64_decode($_POST["content"])."\")"; $resultat = mysql_query($requete); -- libgit2 0.21.2