|
From: Benjamin C. <bc...@us...> - 2005-06-04 18:57:08
|
Update of /cvsroot/phpbt/phpbt/inc In directory sc8-pr-cvs1.sourceforge.net:/tmp/cvs-serv14126/inc Modified Files: auth.php Log Message: Query quoting Index: auth.php =================================================================== RCS file: /cvsroot/phpbt/phpbt/inc/auth.php,v retrieving revision 1.20 retrieving revision 1.21 diff -u -r1.20 -r1.21 --- auth.php 22 Jan 2005 16:30:26 -0000 1.20 +++ auth.php 4 Jun 2005 18:56:55 -0000 1.21 @@ -74,7 +74,7 @@ $_SESSION['db_fields'] = @unserialize($u['bug_list_fields']); // Grab group assignments and permissions based on groups - $rs = $db->query("select u.group_id, group_name from ".TBL_USER_GROUP." u, ".TBL_AUTH_GROUP." a where user_id = {$u['user_id']} and u.group_id = a.group_id"); + $rs = $db->query("select u.group_id, group_name from ".TBL_USER_GROUP." u, ".TBL_AUTH_GROUP." a where user_id = ".$db->quote($u['user_id'])." and u.group_id = a.group_id"); while (list($groupid, $groupname) = $rs->fetchRow(DB_FETCHMODE_ORDERED)) { $_SESSION['group_ids'][] = $groupid; $_SESSION['group'][$groupname] = true; |