From 0d9ec8e69e5e728127a8524be5ffef25a4dcc394 Mon Sep 17 00:00:00 2001 From: Julio Montoya Date: Mon, 15 Feb 2010 16:52:00 -0500 Subject: [PATCH] Improving display_user_link_work function --- main/work/work.lib.php | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/main/work/work.lib.php b/main/work/work.lib.php index 0d9401b5d5..35ab8abdbd 100755 --- a/main/work/work.lib.php +++ b/main/work/work.lib.php @@ -223,13 +223,13 @@ function display_studentsdelete_form() function display_user_link_work($user_id, $name='') { global $_otherusers; - - if ($user_id<>0) { - + $user_id = intval($user_id); + + if ($user_id <> 0) { $table_user = Database::get_main_table(TABLE_MAIN_USER); - $sql="SELECT * FROM $table_user WHERE user_id='".Database::escape_string($user_id)."'"; - $result=Database::query($sql); - $row=Database::fetch_array($result); + $sql = "SELECT user_id, firstname, lastname FROM $table_user WHERE user_id='".Database::escape_string($user_id)."'"; + $result = Database::query($sql); + $row = Database::fetch_array($result); if ($name=='') { return "".api_get_person_name($row['firstname'], $row['lastname']).""; } else {