note 31104 added to function.mysql-escape-string
| From: | mike at vbmysql dot com | Date: | Wed, 09 Apr 2003 21:44:13 +0000 |
| Subject: | note 31104 added to function.mysql-escape-string | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-46429@lists.php.net to get a copy of this message | ||
As for hackers not being able to drop tables because of the one statement at a time execution, that
is a MySQL limitation, not a limitation of PHP. Be warned; this is being fixed very soon, so be sure
to add mysql_escape_string before you upgrade to a MySQL 4.x databse.
--
http://www.php.net/manual/en/function.mysql-escape-string.php
http://master.php.net/manage/user-notes.php?action=edit+31104
http://master.php.net/manage/user-notes.php?action=delete+31104
http://master.php.net/manage/user-notes.php?action=reject+31104