PHP mysql_* commands and safe them.
#7

Encrypt your passwords and remove all specialchars from the username and the same at the email but there you need to allow this chars "@._-".

function clean_str($str) //function to clean strings
{
$str = @trim($str);
if(get_magic_quotes_gpc())
{
$str = stripslashes($str);
}
$str = preg_replace("/[^a-zA-Z0-9]/" , "" , $str);
return $str;
} // Ende Clean String

use this function for your usernames and for emails change the

$str = preg_replace("/[^a-zA-Z0-9]/" , "" , $str);to$str = preg_replace("/[^a-zA-Z0-9@._\-]/" , "" , $str);
 

Greets



Messages In This Thread
[No subject] - by SeaLife - 01-11-2013, 05:25 PM
[No subject] - by Wizatek - 01-13-2013, 12:31 AM
[No subject] - by mord - 01-13-2013, 02:09 AM
[No subject] - by Wizatek - 01-14-2013, 05:20 AM
[No subject] - by SeaLife - 01-22-2013, 04:30 PM
[No subject] - by Wizatek - 01-22-2013, 08:15 PM
[No subject] - by Samker132 - 02-08-2013, 10:32 PM

Forum Jump:


Users browsing this thread: 1 Guest(s)