Golgappa.net | Golgappa.org | BagIndia.net | BodyIndia.Com | CabIndia.net | CarsBikes.net | CarsBikes.org | CashIndia.net | ConsumerIndia.net | CookingIndia.net | DataIndia.net | DealIndia.net | EmailIndia.net | FirstTablet.com | FirstTourist.com | ForsaleIndia.net | IndiaBody.Com | IndiaCab.net | IndiaCash.net | IndiaModel.net | KidForum.net | OfficeIndia.net | PaysIndia.com | RestaurantIndia.net | RestaurantsIndia.net | SaleForum.net | SellForum.net | SoldIndia.com | StarIndia.net | TomatoCab.com | TomatoCabs.com | TownIndia.com
Interested to Buy Any Domain ? << Click Here >> for more details...

what is sql Injection?

Answer Posted / kerem kusmezer

Sql Injection is one of the input manipulation attacks,
which in case the sql statement is directly buildup from an
string concatanation, in which the user can change through
entry the result sql statement.

For Example:

select top 1 username from users where username
= '&txtusername.Text&'.
If the user enters the text with ' or -- he can add more
command to the outcoming sql statement and change the query
set.

Is This Answer Correct ?    2 Yes 0 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

What are the Features of a dataset

1181


Explain executenonquery?

1067


How would you connect to database using .NET?

981


Explain how can we load multiple tables in to dataset?

897


Define isolation?

918


How do you update database through dataset?

934


What is basic use of data view?

941


Explain the basic use of "dataview" and explain its methods.

940


What is the use of SqlCommandBuilder?

1145


Data reader read and forward only, how is it possible to get 2 tables of data at a time?

860


What is dataset object? Explain the various objects in dataset.

979


What is difference between ado and other data object?

860


Explain About ado.net components/objects. Usage of data adapters and tell the steps to retrieve data.

1024


What is the difference between data grid and data repeater?

1002


Can we do database operations without using any of the ado.net objects?

931