what is meant by sql injection with example and one more
question how to catch the errors in sqlserver
Answer Posted / sudheer
sql injection attacks are used to steal information from a
database from which normally not be available and /or to
gain access to an organaization 's host computers through
the computer that is hosting the database.
EXAMPLE:
select email,pwd,login_id,fullname from members where
email='x'
Now somebody does not put 'x' as the input but
puts 'x ;drop table members;' so the actual sql wich will
execute is
select email,pwd,login_id,fullname from members where
email=x;drop table members;
Think once what happens to ur database.
| Is This Answer Correct ? | 8 Yes | 0 No |
Post New Answer View All Answers
What is use of attributehierarchyenabled? : sql server analysis services, ssas
What are the types of indexing?
Can you get second highest salary from the table?
What are information schema views?
How to concatenate two binary strings together?
How to create a dynamic cursor with the dynamic option?
Explain how long are locks retained within the repeatable_read and serializable isolation levels, during a read operation with row-level locking?
What is SQL Azure?
What is multilevel indexing?
What is the command used to recompile the stored procedure at run time?
What is openrowset sql server?
Define Joins?
What is partition in sql server?
How to drop an existing schema in ms sql server?
How to generate create function script on an existing function?