Help, security question
| From: | Chris | Date: | Wed, 27 Sep 2000 21:43:46 +0000 |
| Subject: | Help, security question | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-17795@lists.php.net to get a copy of this message | ||
Hi,
I have a question about security.
Say I have a form that takes a users input, then I use that to select or insert data into a mysql
table.
What all should be done to that inputed value before acually using it?
Is addslashes() good enough? Are there some special characters that should never be allowed to stay
in the variable?
Help please,
Thanks
Chris