Ignore:
Timestamp:
Nov 29, 2009, 1:35:19 PM (14 years ago)
Author:
nikrou
Message:

Feature_1255 :

  • single quotes in queries
  • start using $confdblayer
File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/admin/include/plugins.class.php

    r4034 r4385  
    8181        {
    8282          $query = '
    83 INSERT INTO ' . PLUGINS_TABLE . ' (id,version) VALUES ("'
    84 . $plugin_id . '","' . $this->fs_plugins[$plugin_id]['version'] . '"
     83INSERT INTO ' . PLUGINS_TABLE . ' (id,version) VALUES (\''
     84. $plugin_id . '\',\'' . $this->fs_plugins[$plugin_id]['version'] . '\'
    8585)';
    8686          pwg_query($query);
     
    111111          $query = '
    112112UPDATE ' . PLUGINS_TABLE . '
    113 SET state="active", version="'.$this->fs_plugins[$plugin_id]['version'].'"
    114 WHERE id="' . $plugin_id . '"';
     113SET state=\'active\', version=\''.$this->fs_plugins[$plugin_id]['version'].'\'
     114WHERE id=\'' . $plugin_id . '\'';
    115115          pwg_query($query);
    116116        }
     
    127127        }
    128128        $query = '
    129 UPDATE ' . PLUGINS_TABLE . ' SET state="inactive" WHERE id="' . $plugin_id . '"';
     129UPDATE ' . PLUGINS_TABLE . ' SET state=\'inactive\' WHERE id=\'' . $plugin_id . '\'';
    130130        pwg_query($query);
    131131        if (file_exists($file_to_include))
     
    145145        }
    146146        $query = '
    147 DELETE FROM ' . PLUGINS_TABLE . ' WHERE id="' . $plugin_id . '"';
     147DELETE FROM ' . PLUGINS_TABLE . ' WHERE id=\'' . $plugin_id . '\'';
    148148        pwg_query($query);
    149149        if (file_exists($file_to_include))
Note: See TracChangeset for help on using the changeset viewer.