An error occur says ...
You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'Jaribio la 1' AND YEAR(Mdate)='' AND MONTH(Mdate)='2013') LIMIT 10' at line 1
and php code is
$result1=mysql_query("SELECT `Scode`,`Sfname`,`Smname`,`Slname`,`SDarasa` FROM students WHERE SDarasa='$darasa' AND Scode NOT IN (SELECT `MScode` FROM `matokeo` WHERE `MTcode`='$Tcode' AND `Exam_name`='$somo' AND `Exam_type`='$ExamTyp' AND YEAR(Mdate)='$mwaka' AND MONTH(Mdate)='$mwezi') LIMIT 10") or die(mysql_error());
i do escape string with
$ExamTyp=addcslashes(mysql_real_escape_string($phpVariable), "%_");
for all my variables.