convert string to safe string before adding to database

Ask a Question related to Macromedia ColdFusion, Design and Development.

  1. #1

    Default convert string to safe string before adding to database

    Hi

    I am updating a site for a client who is running CF5. The update and insert
    queries break when the user uses inverted commas ". I currently have a
    script which does the following:

    <cfscript>
    content = ReplaceNoCase(attributes.content,"&##x93;","&quot; ","ALL");
    content = ReplaceNoCase(content,"&ldquo;","&quot;","ALL");
    content = ReplaceNoCase(content,"&lsquo;","&##8216;","ALL");
    content = ReplaceNoCase(content,"&##x94;","&quot;","ALL");
    content = ReplaceNoCase(content,"&rdquo;","&quot;","ALL");
    content = ReplaceNoCase(content,"&rsquo;","&##8216;","ALL");
    content = ReplaceNoCase(content,"&##x91;","&##8216;","ALL");
    content = ReplaceNoCase(content,"&##x92;","&##8216;","ALL");
    content = ReplaceNoCase(content,"&##x96;","-","ALL");
    content = ReplaceNoCase(content,"&ndash;","-","ALL");
    content = ReplaceNoCase(content,""","&quot;","ALL");
    content = ReplaceNoCase(content,""","&quot;","ALL");
    content = ReplaceNoCase(content,"'","&##8217;","ALL");
    content = ReplaceNoCase(content,"'","&##8217;","ALL");
    content = ReplaceNoCase(content,"'","&##8217;","ALL");
    content = ReplaceNoCase(content,"'","&##8217;","ALL");
    content = ReplaceNoCase(content,"-","-","ALL");
    content = ReplaceNoCase(content,"£","&pound;","ALL");
    content = ReplaceNoCase(content,"""","&quot;","ALL");
    caller.result = content;
    </cfscript>

    but the inverted commas are still breaking the script. The database is
    access.

    any help or advice appreciated!!

    Shaun


    forums.macromedia.com Guest

  2. Similar Questions and Discussions

    1. How to convert ByteArray to String?
      We are using SQL Server, one of the columns is ByteArray datatype, when I tried to output it with the <cfoutput> tag, I got ' ByteArray objects...
    2. Convert String to Int then divide
      Here is my code: <cfdirectory directory = "f:\testbed\documents\" name = "myDirectory" sort = "name ASC, size DESC"> <!--- Output the contents...
    3. How to convert string to float?
      i want to covert a querystring to float number in asp. what function should i use? i know cint() can convert string to int but how about float?
    4. How to convert forma value to string
      Subbu, Try... Format(!!) - Steve Schapel, Microsoft Access MVP On Tue, 22 Jul 2003 14:54:28 -0700, "subbu"...
    5. Convert string to HTML
      Is there something in .NET that will convert a string so that it can be displayed correctly as HTML? eg I would like to convert the string "a <...
  3. #2

    Default Re: convert string to safe string before adding todatabase

    Hi

    can you try with PreserveSingleQuotes ?
    will it works for your situation.?
    can you post your final update query (The dynamic query generate by your program).
    vkunirs Guest

Posting Permissions

  • You may not post new threads
  • You may post replies
  • You may not post attachments
  • You may not edit your posts

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139