Use explicit column name in elec_get_results
This commit is contained in:
		
							parent
							
								
									a9b12101dc
								
							
						
					
					
						commit
						ac50b1afb4
					
				
					 1 changed files with 1 additions and 1 deletions
				
			
		|  | @ -209,7 +209,7 @@ function elec_get_results ($handle, $election_id) { | ||||||
| 
 | 
 | ||||||
|   $escaped_election_id = mysql_real_escape_string ($election_id, $handle); |   $escaped_election_id = mysql_real_escape_string ($election_id, $handle); | ||||||
| 
 | 
 | ||||||
|   $query = "SELECT * FROM " . $results_table; //FIXME: Don't use wildcards
 |   $query = "SELECT result FROM " . $results_table; | ||||||
|   $query .= " WHERE election_id = '".$escaped_election_id."'"; |   $query .= " WHERE election_id = '".$escaped_election_id."'"; | ||||||
| 
 | 
 | ||||||
|   $result = mysql_query ($query, $handle); |   $result = mysql_query ($query, $handle); | ||||||
|  |  | ||||||
		Loading…
	
	Add table
		
		Reference in a new issue
	
	 Tobias Mueller
						Tobias Mueller