$sql = "INSERT INTO ".TB_PREF."dimensions (reference, name, type_, date_, due_date)
VALUES (".db_escape($reference).", ".db_escape($name).", ".db_escape($type_)
- .", ".db_escape($date_).", ".db_escape($due_date).")";
+ .", '$date', '$duedate')";
db_query($sql, "could not add dimension");
$id = db_insert_id();
$sql = "UPDATE ".TB_PREF."dimensions SET name=".db_escape($name).",
type_ = ".db_escape($type_).",
- date_=".db_escape($date_).",
- due_date=".db_escape($due_date)."
+ date_='$date',
+ due_date='$duedate'
WHERE id = ".db_escape($id);
db_query($sql, "could not update dimension");