Golgappa.net | Golgappa.org | BagIndia.net | BodyIndia.Com | CabIndia.net | CarsBikes.net | CarsBikes.org | CashIndia.net | ConsumerIndia.net | CookingIndia.net | DataIndia.net | DealIndia.net | EmailIndia.net | FirstTablet.com | FirstTourist.com | ForsaleIndia.net | IndiaBody.Com | IndiaCab.net | IndiaCash.net | IndiaModel.net | KidForum.net | OfficeIndia.net | PaysIndia.com | RestaurantIndia.net | RestaurantsIndia.net | SaleForum.net | SellForum.net | SoldIndia.com | StarIndia.net | TomatoCab.com | TomatoCabs.com | TownIndia.com
Interested to Buy Any Domain ? << Click Here >> for more details...

what is sql Injection?

Answer Posted / srikant dwibedi

SQL Injection is he process of passing SQL code into an
application in a way that was not intended by the
application developer or it is a strategy for attacking
databases.

Example
An ASP page asks the user for a name and a password.
SELECT FROM users WHERE username="whatever" AND
password="mypassword".
It seems safe,but it is not. A user might enter somthing
like this 'OR 1>0....
when this is plugged into the SQL statewments the result
looks like this:
SELECT FROM users WHERE username="OR 1>0 " AND
password=" ";
This injectin comments out of the password portion of the
statement. It results in a list of all the names in the
users table. So any user could get into your system.

Is This Answer Correct ?    3 Yes 2 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

What is execute reader in ado.net?

964


How can we add/remove row's in "datatable" object of "dataset"?

1024


What are the advantages and disadvantages of using datalist?

1084


What is the meaning of executenonquery?

1066


What are the different ado.net namespaces?

1066


What are the several execute methods of ado.net?

934


What connected data?

962


How to check if a datareader is closed or opened? IsClosed()

1029


What is ado and dao?

960


Which is faster datareader or dataadapter?

992


What is an example of ordinal data?

1141


Explain why edit is not possible in repeater?

1037


What are the parameters that control most of connection pooling behaviors?

1010


Describe the command object and its method.

1004


Name which operations can you not perform on an ado.net dataset?

985