When inserting strings into a SQL table in ASP what is the
risk and how can you prevent it?

Answer Posted / nandhu

The risk associated if not properly taken care of is
something called as "SQL Injection" attack.

This means you could

say in Username textfield on the html frontend or any
frontend, is possible to type something like the following
to by pass the security mechanism and get access to the
protected area of the site or application.

Type the following in Username or Password or both and
click on login/submit or equivalent button.

' or 'x' = 'x'

Is This Answer Correct ?    0 Yes 1 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

write a program to display configuration of a local system with the help of vb script.

1681


1.I want to establish connection with excel and also want to fetch the data using SQL queries. 2.the code should be written in such a way that in future if I want to migrate from excel to MS excess database , then there should be minimal changes.

1510


please can you help me to get a code of flames using a visual basic 6

1224


Which data type/types are supported by vbscript language and what are their specialties?

586


Is vbscript a case-sensitive or case-insensitive?

748






Hello Guys, If any body looking for "worksoft certify tool training in bangalore", please contact me aimansaud@gmail.com

1038


We have 1 web page with names column. I am giving the Service Providers1,2,3.... @ that time dynamically some no of names are displaying in the webpage and The Pop up windows are opening(No.of Pop Up windows=No.of Names). The names may be diffar for each and every Service Provders (Dynamically) How can we handle the Dynamic values?

1750


What is vbscript procedures?

596


Explain the functionality of vbscript?

532


How to create a cookie using vbscript?

583


Explain about the extension .hta?

615


what is the use of QCUtil? explain with one example?

6314


Mention what is variant in vbscript?

548


what is inner join? what is outer join? what is a constraint? tell me about rdbms? tell me about acid properties?

1428


What is Procedure or Subroutine in VB Script?

598