in response to bitg:
find in affiliate.php:
PHP Code:
$DB_site->query("INSERT INTO affiliates (siteurl,sitename,sitedesc,type,email,buttonurl) VALUES('$siteurl','$sitename','$desc','$type','$email','$button')");
change to:
PHP Code:
$DB_site->query("INSERT INTO affiliates (siteurl,sitename,sitedesc,type,email,buttonurl) VALUES('$siteurl','".addslashes($sitename)."','".addslashes($desc)."','$type','$email','$button')");