Username:    Password:        Click Here To Signup     Forgotten Password
Main Menu
Online
Members: 1

Guests: 15

112.111.x.x forum
112.111.x.x forum
116.28.x.x forum
175.44.x.x forum
175.44.x.x forum
175.44.x.x forum
184.72.x.x forum
199.21.x.x forum
204.12.x.x forum
220.161.x.x news
36.251.x.x comment
46.29.x.x forum
5.63.x.x news
66.249.x.x forum
66.249.x.x forum

Last Seen

Rich Thu 18:52
xMin Thu 18:41
BYTM Thu 17:41
Hostprofil Thu 13:15
Wussie Thu 12:43

Newest Members

Forums
Enyby
Thu Sep 30 2010, 04:07PM Quote
Guest
$query = "SELECT * FROM lgsl WHERE (UPPER(ip) LIKE '%".strtoupper($_POST['ip'])."%')AND(UPPER(c_port) LIKE '%".strtoupper($_POST['c_port'])."%')";

Зменить на:
$query = "SELECT * FROM lgsl WHERE (UPPER(ip) LIKE '%".strtoupper(mysql_real_escape_string($_POST['ip']))."%')AND(UPPER(c_port) LIKE '%".strtoupper(mysql_real_escape_string($_POST['c_port']))."%')";

Иначе вам базу взломают вместе с сайтом и сервером.
 

Jump:     Back to top

Begin New Thread

Quick Reply:

 


You are not logged in - Click Here To Signup

Username:    Password:   

Mini Buttons

.... © GreyCube.com - Richard Perry - Powered by e107.org