Andrew Tegenkamp wrote:
> Why is this 

Because CF automatically escapes all single quotes in variables used 
inside of a <CFQUERY...> block.

> and can I fix it? 

Use the perserveSingleQuotes() function whose purpose is to over ride 
this default behavior.

Just be aware that if you are not careful, it is really easy to open 
yourself up to all kinds of potential for SQL injection attacks with 
this kind of functionality.




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Adobe® ColdFusion® 8 software 8 is the most important and dramatic release to 
date
Get the Free Trial
http://ad.doubleclick.net/clk;207172674;29440083;f

Archive: 
http://www.houseoffusion.com/groups/cf-talk/message.cfm/messageid:317534
Subscription: http://www.houseoffusion.com/groups/cf-talk/subscribe.cfm
Unsubscribe: 
http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.4

Reply via email to