Preventing SQL Injection


Posted on 16th Feb 2014 07:03 pm by admin

I have a question about SQL Injection, In some of our code we use this: view plaincopy to clipboardprint?Replace(inString, "'", "''") Replace(inString, "'", "''") does this prevent all forms of SQL Injection? Also what exactly does parameterized statements do?view plaincopy to clipboardprint?myCommand.Parameters.AddWithValue("@username", user); myCommand.Parameters.AddWithValue("@password", pass);
No comments posted yet

Your Answer:

Login to answer
202 Like 50 Dislike
Previous forums Next forums
Other forums

$_POST
Hi, I have 2 seperate php files, and i want my $_POSt["fname"] To go into both of them, Fo

INSERT for date range
Hi all

I have the following table

Code: [Select] `date` date
`day` int(2)
`

Multiple Pages
Hi. Im very new to php. I'm trying to create a basic login/registration page.

So I have a bas

how to get sn motherboard
Hello.
I want to get serial number motherboard, cpu and else hardware.
Can You show me sam

Could Someone Please Debug This?
I was wondering if someone could debug this script for me. I realize it's not the tidest script (and

get url?
how do i get the url of the page i'm currently on, on my website.. i think its get header.. how do i

Formatting echo from database
So I have a database that stores First and last names, then echos them back to a website, as of now

Creating web pages by php
Hello again,
I was just wondering us there a way to use a php script to create a new web page. I

PHP and SMS
Hi all forum members. I am new here and am unsure what category shoild I post this in.
Moderator

Output Buffering question
Hi all,

I've been trying to wrap my head around output buffering. So far I've found tons of

Sign up to write
Sign up now if you have flare of writing..
Login   |   Register
Follow Us
Indyaspeak @ Facebook Indyaspeak @ Twitter Indyaspeak @ Pinterest RSS



Play Free Quiz and Win Cash