RE: [PHP] Security alert and question: semicolon taint
| From: | Kent Wang | Date: | Mon, 04 Sep 2000 05:39:40 +0000 |
| Subject: | RE: [PHP] Security alert and question: semicolon taint | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-15063@lists.php.net to get a copy of this message | ||
Then you did something wrong in your test.I didn't. The column was a mediumint and I inserted as '0'. Anyway, whether SQL likes it or not is irrelevant. I'd just like to know if you all think wrapping with quotes is a secure (albeit shoddy) solution?