$id = intval($_GET['id']); $text = mysql_real_escape_string($_GET['text']); $sql = "SELECT * FROM `tbl` WHERE `id` = {$id}"; $sql = "SELECT * FROM `tbl` WHERE `text`='{$text}'";