diff --git a/htdocs/compta/bank/account.class.php b/htdocs/compta/bank/account.class.php index 0d22e720bd7..2a70fdd4aae 100644 --- a/htdocs/compta/bank/account.class.php +++ b/htdocs/compta/bank/account.class.php @@ -266,7 +266,7 @@ class Account if (! $pcgnumber) $pcgnumber="51"; - $sql = "INSERT INTO ".MAIN_DB_PREFIX."bank_account (datec, label, account_number) values (now(),'$this->label','$pcgnumber');"; + $sql = "INSERT INTO ".MAIN_DB_PREFIX."bank_account (datec, label, account_number) values (now(),'" . addslashes($this->label) . "','$pcgnumber');"; $resql=$this->db->query($sql); if ($resql) {