Code: Select all
function insertForm($txt_name,$txt_text){
$query="INSERT INTO table_name(id, desc) VALUES ('$txt_name','$txt_text')";
$result=$this->cDb->executeQuery($query);
return $result;
}Thanks in advance...
Moderator: General Moderators
Code: Select all
function insertForm($txt_name,$txt_text){
$query="INSERT INTO table_name(id, desc) VALUES ('$txt_name','$txt_text')";
$result=$this->cDb->executeQuery($query);
return $result;
}Code: Select all
mysql_query('insert something (textfld) values('.mysql_escape_string("testin'").')');Code: Select all
insert something (textfld) values('testin''')