Re: using DB & quickform - best way to protect user input? striptags()? smartquote()?
| From: | Justin Patrin | Date: | Thu, 03 Mar 2005 21:38:05 +0000 |
| Subject: | Re: using DB & quickform - best way to protect user input? striptags()? smartquote()? | ||
| References: | 1 | Groups: | php.pear.general |
| Request: | Send a blank email to pear-general+get-17827@lists.php.net to get a copy of this message | ||
On Thu, 3 Mar 2005 12:45:39 -0800 (PST), l Burnerheimerton
<lburnerheimerton@yahoo.com> wrote:
> I use DB in my site and want to be sure noting gets in
> that could cause any damage to users once the database
> field is diplayed via script or in the sql query
> itself.
>
See here:
http://www.reversefold.com/tikiwiki/tiki-index.php?page=PHPFAQs#id568450
and here:
http://www.reversefold.com/tikiwiki/tiki-index.php?page=PHPFAQs#id577313
--
Justin Patrin