- change mysql_escape_string function (deprecated) by mysql_real_escape_string.

- Correction on install.tpl (link color).

git-svn-id: http://piwigo.org/svn/trunk@2752 68402e56-0260-453c-a942-63ccdbb3a9ee
This commit is contained in:
patdenice
2008-10-15 20:56:23 +00:00
parent a5aa24e213
commit eb667c7711
7 changed files with 8 additions and 15 deletions
+1 -1
View File
@@ -56,7 +56,7 @@ if (isset($_POST['submit']))
}
else if (isset($_POST['mail_address']) and !empty($_POST['mail_address']))
{
$mail_address = mysql_escape_string($_POST['mail_address']);
$mail_address = mysql_real_escape_string($_POST['mail_address']);
$query = '
SELECT '.$conf['user_fields']['id'].' AS id