Anti-SQL Injection

$_GET      = sql_injection_deal($_GET); 
$_POST        = sql_injection_deal($_POST);
$_COOKIE   = sql_injection_deal($_COOKIE);
function sql_injection_deal($arr){     
if(get_magic_quotes_gpc()){ return $arr;}//php>6 以舍弃,必须自己转义
foreach($arr as $k=>$v){
if (            is_string ( $v )) {
 $arr [$k] = addslashes ( $v );
       } else if ( is_array ( $v )) { 
 # If it is an array, then escape.
 $arr [$k] = sql_injection_deal ( $v );
       }    
    } 
 return $arr ;
 }                                   

Guess you like

Origin http://43.154.161.224:23101/article/api/json?id=325682016&siteId=291194637