diff options
author | Vinolentus <none@none> | 2011-12-12 20:36:46 +0100 |
---|---|---|
committer | Machiavelli <machiavelli.trinity@gmail.com> | 2011-12-13 13:58:49 +0100 |
commit | 599a24df249ab43cb08864a6ffa19b1b769aab54 (patch) | |
tree | 7437caf09f9299b031db72aafbbf4f8664fd007f /src | |
parent | cd5704f37257ef4c89c98cd1dec223b58409940d (diff) |
Core/ObjectMgr: Fix possible SQL injection for game_tele
Diffstat (limited to 'src')
-rwxr-xr-x | src/server/game/Globals/ObjectMgr.cpp | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/src/server/game/Globals/ObjectMgr.cpp b/src/server/game/Globals/ObjectMgr.cpp index 4e159209e86..ff3815d367f 100755 --- a/src/server/game/Globals/ObjectMgr.cpp +++ b/src/server/game/Globals/ObjectMgr.cpp @@ -8041,7 +8041,7 @@ bool ObjectMgr::AddGameTele(GameTele& tele) m_GameTeleMap[new_id] = tele; std::string safeName(tele.name); - WorldDatabase.EscapeString(safeName); + WorldDatabase.escape_string(safeName); WorldDatabase.PExecute("INSERT INTO game_tele (id, position_x, position_y, position_z, orientation, map, name) VALUES (%u, %f, %f, %f, %f, %d, '%s')", new_id, tele.position_x, tele.position_y, tele.position_z, tele.orientation, tele.mapId, safeName.c_str()); |