douyi5157 2015-01-01 04:56
浏览 68
已采纳

“和'在textarea中用于php脚本

How can I allow " or ' in any of my form inputs and process it in php with out getting syntax error I dont know where to begin to start trying to fix it.

i would assume you would negate it. How would i go about negating " and ' in the inputs on the form. I have tried this

str_replace("\"","\\\"",str_replace("\'","'",$_POST['server_desc']))

it works for the " but not for ' how can i get it to work for both

Iam getting this error

Error: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 's Minecon, and won the award for \"Best PVP Server!\" LOLWeapons - Includes c' at line 23

  • 写回答

1条回答 默认 最新

  • dsz7121 2015-01-01 05:17
    关注

    Use mysqli_real_escape_string

    mysqli::real_escape_string -- mysqli_real_escape_string — Escapes special characters in a string for use in an SQL statement.

    Characters encoded are NUL (ASCII 0), , , \, ', ", and Control-Z.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 java业务性能问题求解(sql,业务设计相关)
  • ¥15 52810 尾椎c三个a 写蓝牙地址
  • ¥15 elmos524.33 eeprom的读写问题
  • ¥15 使用Java milo连接Kepserver服务端报错?
  • ¥15 用ADS设计一款的射频功率放大器
  • ¥15 怎么求交点连线的理论解?
  • ¥20 软件开发方法学习来了
  • ¥15 微信小程序商城如何实现多商户收款 平台分润抽成
  • ¥15 HC32L176调试了一个通过TIMER5+DMA驱动WS2812B
  • ¥15 关于自相关函数法和周期图法实现对随机信号的功率谱估计的matlab程序运行的问题,请各位专家解答!