Jump to content

PCI Compliance Problems with sql string


Guest jrod101

Recommended Posts

Guest jrod101

Hello,

We have Mcaffee doing PCI compliance checks on our site, to make a long story short this is the errors we're getting:

MySQL Error Occurred

Error Message:

1064: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near ';#(1234567890*27)#'' at line 1

SQL:

SELECT id FROM CubeCart_search WHERE searchstr='"'>#(1234567890

The error is being reported from the index.php file.

Here are my specs:

Cubecart version: 4.3.3

PHP Version: 5.2.10

MySQL Version: 5.0.45

Please help!?!

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...