Level Extreme platform
Subscription
Corporate profile
Products & Services
Support
Legal
Français
How to insert a field with a quote
Message
 
To
12/09/2008 14:24:15
General information
Forum:
Microsoft SQL Server
Category:
Scripting
Environment versions
SQL Server:
SQL Server 2005
Miscellaneous
Thread ID:
01347154
Message ID:
01347180
Views:
15
>>You are open to Injection attacks then.
>
>This is a script to take existing data and putting it back on the table. So, I control it entirely. I have parameterized valus at 100% across all my applications. So, this is not a factor here.

I am a little paranoid here :-)
Against Stupidity the Gods themselves Contend in Vain - Johann Christoph Friedrich von Schiller
The only thing normal about database guys is their tables.
Previous
Reply
Map
View

Click here to load this message in the networking platform