# HG changeset patch # User Sushi-k # Date 1247472727 -32400 # Node ID 152b146bd27608c7e772f807fa140d2429d4a882 # Parent 500c7fbb46aa8083c9f9dc4b35994b83379b8a24 fixed: mysql_connect before mysql_real_escape_string diff -r 500c7fbb46aa -r 152b146bd276 programTable.php --- a/programTable.php Thu Jul 09 20:08:46 2009 +0900 +++ b/programTable.php Mon Jul 13 17:12:07 2009 +0900 @@ -11,7 +11,10 @@ $category_id = 0; $station = 0; +// mysql_real_escape_stringより先に接続しておく必要がある +$dbh = @mysql_connect(DB_HOST, DB_USER, DB_PASS ); + // パラメータの処理 if(isset( $_POST['do_search'] )) { if( isset($_POST['search'])){ if( $_POST['search'] != "" ) { @@ -44,14 +47,13 @@ } } } - $options .= " ORDER BY starttime ASC LIMIT 300"; - $do_keyword = 0; if( ($search != "") || ($type != "*") || ($category_id != 0) || ($station != 0) ) $do_keyword = 1; - + try{ + $precs = DBRecord::createRecords(TBL_PREFIX.PROGRAM_TBL, $options ); $programs = array(); diff -r 500c7fbb46aa -r 152b146bd276 recordedTable.php --- a/recordedTable.php Thu Jul 09 20:08:46 2009 +0900 +++ b/recordedTable.php Mon Jul 13 17:12:07 2009 +0900 @@ -8,6 +8,9 @@ $category_id = 0; $station = 0; +// mysql_real_escape_stringより先に接続しておく必要がある +$dbh = @mysql_connect( DB_HOST, DB_USER, DB_PASS ); + #$options = "WHERE complete='1'"; $options = "WHERE starttime < '". date("Y-m-d H:i:s")."'"; // ながら再生は無理っぽい?