Re[2]: Tom->Re: [PHP] session hijacking
| From: | Tom Rogers | Date: | Mon, 20 Oct 2003 01:13:20 +0000 |
| Subject: | Re[2]: Tom->Re: [PHP] session hijacking | ||
| References: | 1 2 3 4 5 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-166712@lists.php.net to get a copy of this message | ||
Hi,
RA> If i declare them before using them like the above example...do you think I
RA> still need to use that class?
RA> Cheers,
RA> -Ryan
That depends on what your dicky friend is doing to screw your code up.
If you are passing ids' in the url or in post data then encode them. If he is inventing url
variables that happen to match ones you are using then setting them at the start will be enough
--
regards,
Tom