Q
Which PHP function is used to sanitize user input to prevent SQL injection attacks?

Answer & Solution

Answer: Option C
Solution:
The mysql_real_escape_string() function is used to escape special characters in a string for use in an SQL statement. This helps prevent SQL injection attacks by escaping characters that could be used to manipulate the SQL query.
Related Questions on Average

Which PHP superglobal array is used to retrieve form data sent with the POST method?

A). $_POST

B). $_GET

C). $_REQUEST

D). $_SERVER

Which PHP function is used to handle file uploads?

A). upload_file()

B). process_upload()

C). handle_upload()

D). move_uploaded_file()

Which PHP superglobal array is used to retrieve form data sent with the POST method?

A). $_POST

B). $_GET

C). $_REQUEST

D). $_SERVER

What is the purpose of the isset() function in PHP when handling form submissions?

A). To check if a variable is empty

B). To check if a variable is set and is not NULL

C). To check if a variable is numeric

D). To convert a variable to a string

What is the purpose of the isset() function in PHP when handling form submissions?

A). To check if a variable is empty

B). To check if a variable is set and is not NULL

C). To check if a variable is numeric

D). To convert a variable to a string

How can you prevent SQL injection attacks in PHP?

A). Use prepared statements with parameterized queries.

B). Escape user input using the htmlspecialchars() function.

C). Sanitize user input using the filter_var() function.

D). Validate user input using regular expressions.

What type of attribute is used in an HTML form to specify where to send the form data?

A). method

B). action

C). type

D). name

What is the purpose of the explode() function in PHP?

A). To split a string into an array based on a specified delimiter.

B). To join array elements into a string using a specified delimiter.

C). To sort an array in ascending order.

D). To merge two or more arrays.

What type of attribute is used in an HTML form to specify where to send the form data?

A). method

B). action

C). type

D). name

How can you access the value of a form field named 'username' submitted via the POST method in PHP?

A). $_GET['username']

B). $_POST['username']

C). $_REQUEST['username']

D). $_SERVER['username']