Changeset 11027 for extensions/hr_os_xl
- Timestamp:
- May 23, 2011, 10:41:40 PM (13 years ago)
- Location:
- extensions/hr_os_xl/admin
- Files:
-
- 2 edited
Legend:
- Unmodified
- Added
- Removed
-
extensions/hr_os_xl/admin/admin.inc.php
r10825 r11027 19 19 $query = ' 20 20 UPDATE '.CONFIG_TABLE.' 21 SET value = "'. addslashes(serialize($_POST['foo'])).'"21 SET value = "'.pwg_db_real_escape_string(serialize($_POST['foo'])).'" 22 22 WHERE param = "hr_os_xl" 23 23 ;'; -
extensions/hr_os_xl/admin/maintain.inc.php
r10825 r11027 16 16 $query = ' 17 17 INSERT INTO ' . CONFIG_TABLE . ' (param,value,comment) 18 VALUES ("hr_os_xl" , "'. addslashes(serialize($config)).'" , "hr_os_xl parameters");';18 VALUES ("hr_os_xl" , "'.pwg_db_real_escape_string(serialize($config)).'" , "hr_os_xl parameters");'; 19 19 20 20 pwg_query($query);
Note: See TracChangeset
for help on using the changeset viewer.