1.

How Do You Protect Your Site From Sql Injection In Zend When Using Select Query?

Answer»

You have to quote the strings,

$this-&GT;getAdapter ()->quote (&LT;VARIABLE name ); $select->where (”<field name> = “,<variable name> ); OR (If you are using the QUESTION mark after equal to sign) $select->where (”<field name> = ? “, <variable name>);

 

You have to quote the strings,

 



Discussion

No Comment Found