From c17d525b78183ce8d34c037f38679476400997c9 Mon Sep 17 00:00:00 2001 From: Regis Houssin Date: Tue, 11 Apr 2006 12:41:58 +0000 Subject: [PATCH] Fix: gestion des apostrophes dans la description --- htdocs/compta/bank/account.class.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/htdocs/compta/bank/account.class.php b/htdocs/compta/bank/account.class.php index 2a70fdd4aae..0cfb880702f 100644 --- a/htdocs/compta/bank/account.class.php +++ b/htdocs/compta/bank/account.class.php @@ -215,7 +215,7 @@ class Account $datev = $date; $sql = "INSERT INTO ".MAIN_DB_PREFIX."bank (datec, dateo, datev, label, amount, fk_user_author, num_chq, fk_account, fk_type)"; - $sql.= " VALUES (now(), '".$date."', '$datev', '$label', '" . price2num($amount) . "', '".$user->id."' ,'$num_chq', '".$this->rowid."', '$oper')"; + $sql.= " VALUES (now(), '".$date."', '$datev', '".addslashes($label)."', '" . price2num($amount) . "', '".$user->id."' ,'$num_chq', '".$this->rowid."', '$oper')"; if ($this->db->query($sql)) {