Hi,
sorry forposting so late... didn't have much time
The most importent rule in web-programming is "never trust user input". But this rule is ignored here, so injection of SQL statements is possible...
[detailed description removed]
I have postet a very simmilar hack with enhanced functionality (templates...), which should be safe (uses verifyid() ) here:
https://vborg.vbsupport.ru/showthrea...threadid=37172