Guest User

Untitled

a guest
Feb 16th, 2018
78
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.08 KB | None | 0 0
  1. default=1,name='Bob',lastName="Jones"
  2.  
  3.  
  4. $ins = "INSERT into table (field1,field2,fiel3,) values ('data1','data2',????)";
  5.  
  6. $data3 = mysql_escape_string(????);
  7.  
  8. $mysqli = new mysqli($servername, $username, $password);
  9.  
  10. $stmt = $mysqli->prepare("INSERT into table (field1,field2,fiel3,) values (?,?,?)");
  11. $stmt->bind_param("sss",$data1,$data2,$data3);
  12. $stmt->execute();
  13.  
  14. $dns = "mysql:dbname=test;host=localhost";
  15. $user = "root";
  16. $password = "";
  17.  
  18. $connection = new PDO($dns, $user, $password);
  19.  
  20. $sql = "INSERT INTO users (username, password) VALUES (:username, :password)";
  21. $statement = $connection->prepare($sql);
  22. $statement->execute([
  23. ':username' => $username,
  24. ':password' => $password
  25. ]);
  26.  
  27. $statement->bindParam(':username', $username, PDO_PARAM_STRING);
  28.  
  29. <?php
  30.  
  31. function mysql_escape_mimic($inp) {
  32.  
  33. if(is_array($inp))
  34. return array_map(__METHOD__, $inp);
  35.  
  36. if(!empty($inp) && is_string($inp)) {
  37. return str_replace(array('\', "", "n", "r", "'", '"', "x1a"), array('\\', '\0', '\n', '\r', "\'", '\"', '\Z'), $inp);
  38. }
  39.  
  40. return $inp;
  41. }
  42. ?>
Add Comment
Please, Sign In to add comment