note 31379 added to function.setcookie
| From: | serrano at no dot emails dot pls | Date: | Sat, 19 Apr 2003 08:03:38 +0000 |
| Subject: | note 31379 added to function.setcookie | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-46810@lists.php.net to get a copy of this message | ||
also another important issue is to check your received cookies and/or escape them before using in
any database query, otherwise you may end up users sending what they want to the database... an
MD5ed session string is easy to check, like this:
ereg ("^[a-zA-Z0-9]{32}$", $cookie)
...
--
http://www.php.net/manual/en/function.setcookie.php
http://master.php.net/manage/user-notes.php?action=edit+31379
http://master.php.net/manage/user-notes.php?action=delete+31379
http://master.php.net/manage/user-notes.php?action=reject+31379