Sophie

Sophie

distrib > Mandriva > 9.1 > ppc > media > main > by-pkgid > 0afeee9cca140e167a996902b9a677c5 > files > 1682

php-manual-en-4.3.0-2mdk.noarch.rpm

<HTML
><HEAD
><TITLE
>mysql_escape_string</TITLE
><META
NAME="GENERATOR"
CONTENT="Modular DocBook HTML Stylesheet Version 1.7"><LINK
REL="HOME"
TITLE="PHP Manual"
HREF="index.html"><LINK
REL="UP"
TITLE="MySQL Functions"
HREF="ref.mysql.html"><LINK
REL="PREVIOUS"
TITLE="mysql_error"
HREF="function.mysql-error.html"><LINK
REL="NEXT"
TITLE="mysql_fetch_array"
HREF="function.mysql-fetch-array.html"><META
HTTP-EQUIV="Content-type"
CONTENT="text/html; charset=ISO-8859-1"></HEAD
><BODY
CLASS="refentry"
BGCOLOR="#FFFFFF"
TEXT="#000000"
LINK="#0000FF"
VLINK="#840084"
ALINK="#0000FF"
><DIV
CLASS="NAVHEADER"
><TABLE
SUMMARY="Header navigation table"
WIDTH="100%"
BORDER="0"
CELLPADDING="0"
CELLSPACING="0"
><TR
><TH
COLSPAN="3"
ALIGN="center"
>PHP Manual</TH
></TR
><TR
><TD
WIDTH="10%"
ALIGN="left"
VALIGN="bottom"
><A
HREF="function.mysql-error.html"
ACCESSKEY="P"
>Prev</A
></TD
><TD
WIDTH="80%"
ALIGN="center"
VALIGN="bottom"
></TD
><TD
WIDTH="10%"
ALIGN="right"
VALIGN="bottom"
><A
HREF="function.mysql-fetch-array.html"
ACCESSKEY="N"
>Next</A
></TD
></TR
></TABLE
><HR
ALIGN="LEFT"
WIDTH="100%"></DIV
><H1
><A
NAME="function.mysql-escape-string"
></A
>mysql_escape_string</H1
><DIV
CLASS="refnamediv"
><A
NAME="AEN58576"
></A
><P
>    (PHP 4 &#62;= 4.0.3)</P
>mysql_escape_string&nbsp;--&nbsp;
     Escapes a string for use in a mysql_query.
    </DIV
><DIV
CLASS="refsect1"
><A
NAME="AEN58579"
></A
><H2
>Description</H2
>string <B
CLASS="methodname"
>mysql_escape_string</B
> ( string unescaped_string)<BR
></BR
><P
>&#13;     This function will escape the <TT
CLASS="parameter"
><I
>unescaped_string</I
></TT
>,
     so that it is safe to place it in a <A
HREF="function.mysql-query.html"
><B
CLASS="function"
>mysql_query()</B
></A
>.
    </P
><DIV
CLASS="note"
><BLOCKQUOTE
CLASS="note"
><P
><B
>Note: </B
>
      <B
CLASS="function"
>mysql_escape_string()</B
> does not escape
      <TT
CLASS="literal"
>%</TT
> and <TT
CLASS="literal"
>_</TT
>.
     </P
><P
>&#13;      This function is identical to <A
HREF="function.mysql-real-escape-string.html"
><B
CLASS="function"
>mysql_real_escape_string()</B
></A
> except that
      <A
HREF="function.mysql-real-escape-string.html"
><B
CLASS="function"
>mysql_real_escape_string()</B
></A
> takes a connection handler and escapes the
      string according to the current character
      set. <B
CLASS="function"
>mysql_escape_string()</B
> does not take a
      connection argument and does not respect the current charset setting.  
     </P
></BLOCKQUOTE
></DIV
><TABLE
WIDTH="100%"
BORDER="0"
CELLPADDING="0"
CELLSPACING="0"
CLASS="EXAMPLE"
><TR
><TD
><DIV
CLASS="example"
><A
NAME="AEN58599"
></A
><P
><B
>Example 1. <B
CLASS="function"
>mysql_escape_string()</B
> example</B
></P
><TABLE
BORDER="0"
BGCOLOR="#E0E0E0"
CELLPADDING="5"
><TR
><TD
><PRE
CLASS="php"
>&#60;?php
    $item = "Zak's Laptop";
    $escaped_item = mysql_escape_string($item);
    printf ("Escaped string: %s\n", $escaped_item);
?&#62;</PRE
></TD
></TR
></TABLE
><P
>&#13;      The above example would produce the following output:
      <TABLE
BORDER="0"
BGCOLOR="#E0E0E0"
CELLPADDING="5"
><TR
><TD
><PRE
CLASS="screen"
>Escaped string: Zak\'s Laptop</PRE
></TD
></TR
></TABLE
>
     </P
></DIV
></TD
></TR
></TABLE
><P
>&#13;     See also:
     <A
HREF="function.mysql-real-escape-string.html"
><B
CLASS="function"
>mysql_real_escape_string()</B
></A
>,
     <A
HREF="function.addslashes.html"
><B
CLASS="function"
>addslashes()</B
></A
>, and the
     <A
HREF="ref.info.html#ini.magic-quotes-gpc"
>magic_quotes_gpc</A
>
     directive.
    </P
></DIV
><DIV
CLASS="NAVFOOTER"
><HR
ALIGN="LEFT"
WIDTH="100%"><TABLE
SUMMARY="Footer navigation table"
WIDTH="100%"
BORDER="0"
CELLPADDING="0"
CELLSPACING="0"
><TR
><TD
WIDTH="33%"
ALIGN="left"
VALIGN="top"
><A
HREF="function.mysql-error.html"
ACCESSKEY="P"
>Prev</A
></TD
><TD
WIDTH="34%"
ALIGN="center"
VALIGN="top"
><A
HREF="index.html"
ACCESSKEY="H"
>Home</A
></TD
><TD
WIDTH="33%"
ALIGN="right"
VALIGN="top"
><A
HREF="function.mysql-fetch-array.html"
ACCESSKEY="N"
>Next</A
></TD
></TR
><TR
><TD
WIDTH="33%"
ALIGN="left"
VALIGN="top"
>mysql_error</TD
><TD
WIDTH="34%"
ALIGN="center"
VALIGN="top"
><A
HREF="ref.mysql.html"
ACCESSKEY="U"
>Up</A
></TD
><TD
WIDTH="33%"
ALIGN="right"
VALIGN="top"
>mysql_fetch_array</TD
></TR
></TABLE
></DIV
></BODY
></HTML
>