Page 1 of 1

Posted: Wed Nov 19, 2003 8:56 am
by liquedus
for the value of $one, i am assuming this is coming from a form use $_REQUEST['one'] :wink:

Posted: Thu Nov 20, 2003 10:59 pm
by sigix
in recent version of php the global variables access is off
so you can't access query string variables directly by there name
for get method $_GET['']
for post method$_POST['']
$_REQUEST[''] when you don't know about method

refer to chap 15 security-> register_globals topic