Preventing SQL Injection


Posted on 16th Feb 2014 07:03 pm by admin

I have a question about SQL Injection, In some of our code we use this: view plaincopy to clipboardprint?Replace(inString, "'", "''") Replace(inString, "'", "''") does this prevent all forms of SQL Injection? Also what exactly does parameterized statements do?view plaincopy to clipboardprint?myCommand.Parameters.AddWithValue("@username", user); myCommand.Parameters.AddWithValue("@password", pass);
No comments posted yet

Your Answer:

Login to answer
202 Like 50 Dislike
Previous forums Next forums
Other forums

Check premium expire
Hi,

I am making a simple file hosting site and want to check if users premium subscriptions h

Adding delete feature to my forum
Hello I am currently trying to add a delete feature to my forum. I believe I have everything built r

how to query data from website using VC?
I want to query some datum from a website,so I need a program to read data from a .csv file, and ass

Extracting URL pointer within XML tag
Hi.

I'm trying to extract text between two quotation marks in XML. For example, I want to ex

Problem in back link
I have page where i have given javascript back link but when i click on it browser give a message

Why does first ever HttpSendRequest take longer?
I promise this isn't as simple as it sounds. I'm wondering why the the first ever call to HttpSendRe

Querying info from one table based on info in another
Hi, I am currently trying to make a part for my user driven website where one user can subscribe to

pull content
I have an existing page, domain/adverts.php which has a good PR. I've just rebuilt my site and the n

Dynamic memory problem
Hey,

At the beginning of my code, I have this line:

Shape* gShape = 0;

Not loading image
When this function gets loaded it doesn't load the image just trying to figure out why.

Code:

Sign up to write
Sign up now if you have flare of writing..
Login   |   Register
Follow Us
Indyaspeak @ Facebook Indyaspeak @ Twitter Indyaspeak @ Pinterest RSS



Play Free Quiz and Win Cash