$value){ $fields[$name] = mysql_real_escape_string($value); } $query = sprintf("INSERT INTO `%s` (`%s`) VALUES ('%s')", $table, implode(array_keys($fields), '`,`'), implode($fields, "','")); mysql_query($query) or dbLogError($query); } function dbUpdate($table, $fields, $where=''){ foreach($fields as $name => $value) { $value = mysql_real_escape_string($value); $fields[$name] = "`$name`='$value'"; } $query = sprintf("UPDATE `%s` SET %s %s", $table, implode($fields, ','), $where); mysql_query($query) or dbLogError($query); }