From 61a87263e7e35b82347c0ce44633e65e349a9d90 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Michal=20=C4=8Ciha=C5=99?= Date: Fri, 15 Apr 2011 08:55:27 +0200 Subject: [PATCH] Do not use htmlspecialchars in generating SQL (bug#3287048). --- libraries/mult_submits.inc.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/libraries/mult_submits.inc.php b/libraries/mult_submits.inc.php index 665b76d74..270ab71f0 100644 --- a/libraries/mult_submits.inc.php +++ b/libraries/mult_submits.inc.php @@ -339,7 +339,7 @@ elseif ($mult_btn == __('Yes')) { case 'empty_tbl': $a_query = 'TRUNCATE '; - $a_query .= PMA_backquote(htmlspecialchars($selected[$i])); + $a_query .= PMA_backquote($selected[$i]); $run_parts = TRUE; break;