X-Git-Url: https://delta.frontaccounting.com/gitweb/?a=blobdiff_plain;f=manufacturing%2Fincludes%2Fdb%2Fwork_centres_db.inc;h=1d15d7c2882368bec063416a800667acc768a029;hb=3a089b809c344067abc7ca15ed754ab5c09c8f39;hp=a2255c3252f9ced4c8d5d84607108ab4d571261a;hpb=46d3debec422c5ad5ee99c4acfe42bfa60308afb;p=fa-stable.git diff --git a/manufacturing/includes/db/work_centres_db.inc b/manufacturing/includes/db/work_centres_db.inc index a2255c32..1d15d7c2 100644 --- a/manufacturing/includes/db/work_centres_db.inc +++ b/manufacturing/includes/db/work_centres_db.inc @@ -1,31 +1,41 @@ . +***********************************************************************/ function add_work_centre($name, $description) { $sql = "INSERT INTO ".TB_PREF."workcentres (name, description) - VALUES (".db_quote($name).",".db_quote($description).")"; + VALUES (".db_escape($name).",".db_escape($description).")"; db_query($sql, "could not add work centre"); } function update_work_centre($type_id, $name, $description) { - $sql = "UPDATE ".TB_PREF."workcentres SET name=".db_quote($name).", description=".db_quote($description)." - WHERE id=$type_id"; + $sql = "UPDATE ".TB_PREF."workcentres SET name=".db_escape($name).", description=".db_escape($description)." + WHERE id=".db_escape($type_id); db_query($sql, "could not update work centre"); } -function get_all_work_centres() +function get_all_work_centres($all=false) { $sql = "SELECT * FROM ".TB_PREF."workcentres"; + if (!$all) $sql .= " WHERE !inactive"; return db_query($sql, "could not get all work centres"); } function get_work_centre($type_id) { - $sql = "SELECT * FROM ".TB_PREF."workcentres WHERE id=$type_id"; + $sql = "SELECT * FROM ".TB_PREF."workcentres WHERE id=".db_escape($type_id); $result = db_query($sql, "could not get work centre"); @@ -34,9 +44,8 @@ function get_work_centre($type_id) function delete_work_centre($type_id) { - $sql="DELETE FROM ".TB_PREF."workcentres WHERE id=$type_id"; + $sql="DELETE FROM ".TB_PREF."workcentres WHERE id=".db_escape($type_id); db_query($sql, "could not delete work centre"); } -?> \ No newline at end of file