Changed database access to PDO using prepared statements
This commit is contained in:
21
assetadd.php
21
assetadd.php
@@ -12,18 +12,15 @@ include("includes.php");
|
||||
if((isset($_GET['assetclass_id'])) ? $assetclass_id = sanitize($_GET['assetclass_id']) : $assetclass_id = "");
|
||||
|
||||
include("header.php");
|
||||
|
||||
$query = "SELECT
|
||||
assetclass_id,
|
||||
assetclass_name
|
||||
FROM
|
||||
assetclass
|
||||
ORDER BY
|
||||
assetclass_name";
|
||||
|
||||
$assetclasses = $db->db_select($query);
|
||||
foreach ($assetclasses as $assetclass) {
|
||||
$assetclass_options[$assetclass['assetclass_id']] = $assetclass['assetclass_name'];
|
||||
|
||||
$sql = "SELECT assetclass_id, assetclass_name
|
||||
FROM assetclass
|
||||
ORDER BY assetclass_name";
|
||||
$sth = $dbh->query($sql);
|
||||
|
||||
$assetclass_options = array();
|
||||
foreach ($sth->fetchAll(PDO::FETCH_NUM) as $rec) {
|
||||
$assetclass_options[$rec[0]] = $rec[1];
|
||||
}
|
||||
|
||||
$smarty->assign("assetclass_options", $assetclass_options);
|
||||
|
||||
Reference in New Issue
Block a user