HOR-281 Fixes references to table and field names.

This commit is contained in:
Chloe Deguzman
2016-03-10 16:08:00 +00:00
parent 61fffbaf2d
commit cd886bb92c

View File

@@ -199,7 +199,7 @@ if( isset($request) ){
$field = mysql_real_escape_string($_GET['fld']);
$field = str_replace("`", "", $field);
$query = "INSERT INTO {$_GET['table']} ({$_GET['pk']}, {$_GET['fld']}) VALUES (?, ?)"; // '$gKey', '{$_GET['value']}')";
$query = "INSERT INTO $tableName ($primaryKeyField, $field) VALUES (?, ?)"; // '$gKey', '{$_GET['value']}')";
$rs = $con->prepareStatement($query);
$rs->set(1, $gKey);