I have read the manual and several posts for this issue, but can't get it to work. How would this code need to be edited to run with register_globals off.
// Fields to add new sport to database
if ( isset( $actionflag ) && $actionflag==add )
{
$newSport = "INSERT INTO Sports (sport, description) VALUES ('".$_POST['new_sport']."', '".$_POST['new_description']."')";
$result = mysql_query($newSport,$connect);
if (! $result)
die ( "newSport fatal error: ".mysql_error() );
}
<form action="testscript.php">
<input type="hidden" name="actionflag" value="add">
<b>Add New Sport</b>
<p>New Sport:<input type="text" name="new_sport"><br>
Description:<textarea name="new_description" rows=5 cols=40 wrap="virtual">
</textarea>
<p><input type="submit" value="Add Sport"></form>