summaryrefslogtreecommitdiff
path: root/tests/sql/mysqli_comment_conditional.phpt
diff options
context:
space:
mode:
authorBen Fuhrmannek2014-06-24 16:56:21 +0200
committerBen Fuhrmannek2014-06-24 16:56:21 +0200
commit93721fdd94f90d48b290749398a26cef277ad129 (patch)
tree16d6f2bbe8ad8e5313b6bb07b18b182aee00b806 /tests/sql/mysqli_comment_conditional.phpt
parentf3efcde454d85cdf4b6ddafa05afe99cea5cfd78 (diff)
Added SQL injection protection for Mysqli and several test cases
Diffstat (limited to 'tests/sql/mysqli_comment_conditional.phpt')
-rw-r--r--tests/sql/mysqli_comment_conditional.phpt25
1 files changed, 25 insertions, 0 deletions
diff --git a/tests/sql/mysqli_comment_conditional.phpt b/tests/sql/mysqli_comment_conditional.phpt
new file mode 100644
index 0000000..0436c64
--- /dev/null
+++ b/tests/sql/mysqli_comment_conditional.phpt
@@ -0,0 +1,25 @@
1--TEST--
2Mysqli query with SQL comment protection and MySQL condition (/*!...*/)
3--INI--
4extension=mysqli.so
5suhosin.sql.bailout_on_error=0
6suhosin.sql.comment=2
7suhosin.sql.opencomment=0
8suhosin.sql.multiselect=0
9suhosin.sql.union=0
10suhosin.log.stdout=32
11--SKIPIF--
12<?php
13include('skipifmysqli.inc');
14include('skipif.inc');
15?>
16--FILE--
17<?php
18include('connect.inc');
19$mysqli = connect_mysqli_oostyle();
20$result = $mysqli->query("SELECT 1 /*! ... */");
21flush();
22echo "mark.";
23?>
24--EXPECTF--
25mark. \ No newline at end of file