Input Filtering
| From: | Jefferson Cowart | Date: | Mon, 08 Jul 2002 08:35:42 +0000 |
| Subject: | Input Filtering | ||
| Groups: | php.db | ||
| Request: | Send a blank email to php-db+get-20386@lists.php.net to get a copy of this message | ||
I realize that I need to do some filtering on user input (variables from
POSTs or GETs) to prevent errors and security breaches. Has any one
written a function to do this. As it is I realize I need to addslashes
on anything going into a DB and worry about semi-colons to prevent SQL
injection attacks. Is there anything else I need to worry about. I'm
using a php 4.2.1 front end to a mysql backend. TIA
----------------
Thanks
Jefferson Cowart
Jeff@cowart.net
Support Open Instant Messaging Protocols
http://www.petitiononline.com/openIM/petition.html