diff -c -r cdash/models/test.php cdash-patch/models/test.php *** cdash/models/test.php Fri Aug 13 00:54:44 2010 --- cdash-patch/models/test.php Fri Aug 13 01:05:18 2010 *************** *** 124,130 **** function Exists() { $crc32 = $this->GetCrc32(); ! $query = pdo_query("SELECT id FROM test WHERE projectid=".qnum($this->ProjectId)." AND crc32='".$crc32."'"); if(pdo_num_rows($query)>0) { $query_array = pdo_fetch_array($query); --- 124,131 ---- function Exists() { $crc32 = $this->GetCrc32(); ! $name = pdo_real_escape_string($this->Name); ! $query = pdo_query("SELECT id FROM test WHERE projectid=".qnum($this->ProjectId)." AND name='$name' AND crc32='".$crc32."'"); if(pdo_num_rows($query)>0) { $query_array = pdo_fetch_array($query);