Preventing SQL Injection


Posted on 16th Feb 2014 07:03 pm by admin

I have a question about SQL Injection, In some of our code we use this: view plaincopy to clipboardprint?Replace(inString, "'", "''") Replace(inString, "'", "''") does this prevent all forms of SQL Injection? Also what exactly does parameterized statements do?view plaincopy to clipboardprint?myCommand.Parameters.AddWithValue("@username", user); myCommand.Parameters.AddWithValue("@password", pass);
No comments posted yet

Your Answer:

Login to answer
202 Like 50 Dislike
Previous forums Next forums
Other forums

Remove values in array2 from array1
I have two arrays.

Array 1 is where the array key holds various different numbers. For exampl

Search in the PHP Files
have to search asterisk(*) in the php code of the php files .
In the html page one text box

Help With editting and deleting form
Hallo !!

So look at this image :

http://img194.imageshack.us/img194/8272/snapshot5f.pn

bit of help needed
Im about to sort out my registration page for my website by customising a "registration" s

Can I call a class inside a function?
I have a class written in another file that handles my image resizing.

Can I do this (php say

Multi Level Array Problem
hi all,

For example I have array like below:

$temp = array(array('north america', 'us'

Just a white page
Okay so, my website, when I click SignUp on it it takes me to /join.php but its a complete white pag

cookie problem
I hv a website url
In this site main menu functionality based on cookie when user click on parti

Displaying Column Names
I have a question regarding the ability to show the column names from my table/query.
What I'm lo

Embedding flash object in Else statement
This is my first major project in PHP and I'm having some trouble embedding a flash object in an Els

Sign up to write
Sign up now if you have flare of writing..
Login   |   Register
Follow Us
Indyaspeak @ Facebook Indyaspeak @ Twitter Indyaspeak @ Pinterest RSS



Play Free Quiz and Win Cash