Ejemplo n.º 1
0
 /**
  * Real escape, using mysqli_real_escape_string() or mysql_real_escape_string()
  *
  * @see mysqli_real_escape_string()
  * @see mysql_real_escape_string()
  * @since 2.8.0
  * @access private
  *
  * @param  string $string to escape
  * @return string escaped
  */
 function _real_escape($string)
 {
     if ($this->dbh) {
         return mssql_escape($string);
     }
     $class = get_class($this);
     if (function_exists('__')) {
         /* translators: %s: database access abstraction class, usually wpdb or a class extending wpdb */
         _doing_it_wrong($class, sprintf(__('%s must set a database connection for use with escaping.'), $class), E_USER_NOTICE);
     } else {
         _doing_it_wrong($class, sprintf('%s must set a database connection for use with escaping.', $class), E_USER_NOTICE);
     }
     return addslashes($string);
 }
Ejemplo n.º 2
0
 /**
  * Real escape, using mysqli_real_escape_string() or mysql_real_escape_string()
  *
  * @see mysqli_real_escape_string()
  * @see mysql_real_escape_string()
  * @since 2.8.0
  * @access private
  *
  * @param  string $string to escape
  * @return string escaped
  */
 function _real_escape($string)
 {
     if ($this->dbh) {
         return mssql_escape($string);
     }
     $class = get_class($this);
     if (function_exists('__')) {
         _doing_it_wrong($class, sprintf(__('%s must set a database connection for use with escaping.'), $class), E_USER_NOTICE);
     } else {
         _doing_it_wrong($class, sprintf('%s must set a database connection for use with escaping.', $class), E_USER_NOTICE);
     }
     return addslashes($string);
 }
Ejemplo n.º 3
0
             //
             // new
             $serverName = "172.27.0.1,2348";
             $connectionInfo = array("Database" => "CCS", "UID" => "CCSUser", "PWD" => "LGECCS");
             $conn = sqlsrv_connect($serverName, $connectionInfo);
             if ($conn === false) {
                 die(print_r(sqlsrv_errors(), true));
                 // show error - testing only
             }
         }
     }
 } else {
     if ($_POST['contact'] == 'email') {
         // selected to be emailed!
         // check email has been entered
         $emailaddress = mssql_escape($_POST['emailaddress']);
         if (!$emailaddress) {
             $erroremail = true;
             $error_message_email = 'Enter Your Email Address.';
         } else {
             // check email address
             if (eregi("^[a-z0-9._-]+@[a-z0-9._-]+.[a-z]{2,6}\$", $email)) {
                 // no show error
                 $error_message_email = 'Check Your Email Address.';
                 $erroremail = true;
             }
         }
         // now check the string looks like an emaill address
         // construct NOTEs
         if (!$erroremail) {
             // send email