svn commit: r395 - trunk/mapbender/http/include/dyn_php.php
    uli at osgeo.org 
    uli at osgeo.org
       
    Wed Jun  7 11:34:51 EDT 2006
    
    
  
Author: uli
Date: 2006-06-07 15:34:50+0000
New Revision: 395
Modified:
   trunk/mapbender/http/include/dyn_php.php
Log:
prepared statements included
Modified: trunk/mapbender/http/include/dyn_php.php
Url: https://mapbender.osgeo.org/source/browse/mapbender/trunk/mapbender/http/include/dyn_php.php?view=diff&rev=395&p1=trunk/mapbender/http/include/dyn_php.php&p2=trunk/mapbender/http/include/dyn_php.php&r1=394&r2=395
==============================================================================
--- trunk/mapbender/http/include/dyn_php.php	(original)
+++ trunk/mapbender/http/include/dyn_php.php	2006-06-07 15:34:50+0000
@@ -1,8 +1,10 @@
 <?php
 if(isset($gui_id))
 {
-	$sql = "SELECT * FROM gui_element_vars WHERE fkey_gui_id = '".$gui_id."' and var_type='php_var'";
-   	$res = db_query($sql);
+	$sql = "SELECT * FROM gui_element_vars WHERE fkey_gui_id = $1 and var_type='php_var'";
+	$v = array($gui_id);
+	$t = array('s');
+   	$res = db_prep_query($sql,$v,$t);
 
 	echo "\n";
 	while($row = db_fetch_array($res))
    
    
More information about the Mapbender_commits
mailing list