Thursday, September 20, 2012

Re: Database name with period/dot results in SQL error

Know that cake doesn't escape strings that are already escaped.

So if you inject '`got.dot`' somewhere appropriate (maybe just put it in useTable) you can work around having a db with table names that are problematic.

AD

--
Like Us on FacekBook https://www.facebook.com/CakePHP
Find us on Twitter http://twitter.com/CakePHP
 
---
You received this message because you are subscribed to the Google Groups "CakePHP" group.
To post to this group, send email to cake-php@googlegroups.com.
To unsubscribe from this group, send email to cake-php+unsubscribe@googlegroups.com.
Visit this group at http://groups.google.com/group/cake-php?hl=en.
 
 

No comments: