[wp-hackers] forum post: sql injection

Mark Jaquith mark.wordpress at txfx.net
Fri Aug 5 05:25:56 GMT 2005


Mike Little wrote:

>On 05/08/05, Denis de Bernardy <denis at semiologic.com> wrote:
>  
>
>>Magic quotes on?
>>
>>D.
>>
>Yes it was on, but I get the same with it on and off.
>
>Mike
>  
>
You *sure* you turned it off?  Meaning, did you turn it off, and then 
test for the value to be certain that it was off?  Those backslashes 
indicate to me that it was escaped... and I can't see anywhere in 
WordPress where that would be escaped.

-- 
Mark Jaquith
http://txfx.net/
MCincubus @ #wordpress



More information about the wp-hackers mailing list