<?php function make_safe($value) { $value = stripslashes($value); $value = (function_exists('mysql_real_escape_string')) ? mysql_real_escape_string($value) : addslashes($value); return $value; } ?>
$db->setQuery("select * from setting where admin='".make_safe($input['user'])."' and pass='".make_safe($input['pass'])."'");