Project

General

Profile

« Previous | Next » 

Revision 212

Added by stefan over 18 years ago

Fixed bug #32 - (wrong use of add_slashes in installation script)

View differences:

save.php
501 501
	$database->query($insert_admin_user);
502 502
	
503 503
	// Search header
504
	$search_header = add_slashes('
504
	$search_header = addslashes('
505 505
<h1>Search</h1>
506 506

  
507 507
<form name="search" action="[WB_URL]/search/index[PAGE_EXTENSION]" method="post">
......
533 533
	$insert_search_header = "INSERT INTO `".TABLE_PREFIX."search` VALUES ('', 'header', '$search_header', '')";
534 534
	$database->query($insert_search_header);
535 535
	// Search footer
536
	$search_footer = add_slashes('');
536
	$search_footer = addslashes('');
537 537
	$insert_search_footer = "INSERT INTO `".TABLE_PREFIX."search` VALUES ('', 'footer', '$search_footer', '')";
538 538
	$database->query($insert_search_footer);
539 539
	// Search results header
540
	$search_results_header = add_slashes(''.
540
	$search_results_header = addslashes(''.
541 541
'[TEXT_RESULTS_FOR] \'<b>[SEARCH_STRING]</b>\':
542 542
<table cellpadding="2" cellspacing="0" border="0" width="100%" style="padding-top: 10px;">');
543 543
	$insert_search_results_header = "INSERT INTO `".TABLE_PREFIX."search` VALUES ('', 'results_header', '$search_results_header', '')";
544 544
	$database->query($insert_search_results_header);
545 545
	// Search results loop
546
	$search_results_loop = add_slashes(''.
546
	$search_results_loop = addslashes(''.
547 547
'<tr style="background-color: #F0F0F0;">
548 548
<td><a href="[LINK]">[TITLE]</a></td>
549 549
<td align="right">[TEXT_LAST_UPDATED_BY] [DISPLAY_NAME] ([USERNAME]) [TEXT_ON] [DATE]</td>
......
552 552
$insert_search_results_loop = "INSERT INTO `".TABLE_PREFIX."search` VALUES ('', 'results_loop', '$search_results_loop', '')";
553 553
$database->query($insert_search_results_loop);
554 554
// Search results footer
555
$search_results_footer = add_slashes("</table>");
555
$search_results_footer = addslashes("</table>");
556 556
$insert_search_results_footer = "INSERT INTO `".TABLE_PREFIX."search` VALUES ('', 'results_footer', '$search_results_footer', '')";
557 557
$database->query($insert_search_results_footer);
558 558
// Search no results
559
$search_no_results = add_slashes('<br />No results found');
559
$search_no_results = addslashes('<br />No results found');
560 560
	$insert_search_no_results = "INSERT INTO `".TABLE_PREFIX."search` VALUES ('', 'no_results', '$search_no_results', '')";
561 561
	$database->query($insert_search_no_results);
562 562
	// Search template

Also available in: Unified diff