that $a & $b is coming from
<input type=text name=a>
<input type=text name=b>
$a = $_POST[a];
$b = $_POST[b];
$fromDB = "
Your Name : ".htmlentities($a)."
Your Company Name : ".htmlentities($b)." ";
$fromDB = eval($fromDB);
$fromDB = addslashes($fromDB);
$Query = "INSERT into my_table(data)
values
('$fromDB')";
$result = mysql_query($Query);
$fromDB = stripslashes($fromDB);
$fromDB = str_replace("\r", '', $fromDB);
$fromDB = str_replace("\n", '', $fromDB);
$fromDB = "
___________________________________________________________
".$fromDB."
___________________________________________________________
Thank You
___________________________________________________________
";
mail("me@email.com", "My Subject", "$fromDB", "From: Me<me@email.com>");