Hi,

Engaged in "cleanup" project, attempting to understand the uncommented decisions of predecessors. Inserting the following contact form values into a DB:


    $first = "'".addslashes($_POST['firstname'])."'";
    $last = "'".addslashes($_POST['lastname'])."'";
    $email = "'".addslashes($_POST['email'])."'";
    $address = "'".addslashes($_POST['address'])."'";
    $city = "'".addslashes($_POST['city'])."'";
    $state = "'".addslashes($_POST['state'])."'";
    $zip = "'".addslashes($_POST['zip'])."'";
    $comments = "'".addslashes($_POST['comments'])."'";
    $newsletter = "'".addslashes($_POST['signup'])."'";
    $contact = "'".addslashes($_POST['contact'])."'";


I can understand addSlashes for the first and last name, but question the need in the other variables, please inform.

CK

--
PHP General Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to