X-Git-Url: https://delta.frontaccounting.com/gitweb/?a=blobdiff_plain;f=manufacturing%2Fincludes%2Fdb%2Fwork_centres_db.inc;h=1338d5d0f091f771895ef481e1c2493633773237;hb=c55119ade6f4c6bd4acdfa55c46870187f408978;hp=a2255c3252f9ced4c8d5d84607108ab4d571261a;hpb=2489ca7e5fc4414b7b70132a23090fd687af5f1b;p=fa-stable.git diff --git a/manufacturing/includes/db/work_centres_db.inc b/manufacturing/includes/db/work_centres_db.inc index a2255c32..1338d5d0 100644 --- a/manufacturing/includes/db/work_centres_db.inc +++ b/manufacturing/includes/db/work_centres_db.inc @@ -3,14 +3,14 @@ function add_work_centre($name, $description) { $sql = "INSERT INTO ".TB_PREF."workcentres (name, description) - VALUES (".db_quote($name).",".db_quote($description).")"; + VALUES (".db_escape($name).",".db_escape($description).")"; db_query($sql, "could not add work centre"); } function update_work_centre($type_id, $name, $description) { - $sql = "UPDATE ".TB_PREF."workcentres SET name=".db_quote($name).", description=".db_quote($description)." + $sql = "UPDATE ".TB_PREF."workcentres SET name=".db_escape($name).", description=".db_escape($description)." WHERE id=$type_id"; db_query($sql, "could not update work centre");