Preventing SQL Injection


Posted on 16th Feb 2014 07:03 pm by admin

I have a question about SQL Injection, In some of our code we use this: view plaincopy to clipboardprint?Replace(inString, "'", "''") Replace(inString, "'", "''") does this prevent all forms of SQL Injection? Also what exactly does parameterized statements do?view plaincopy to clipboardprint?myCommand.Parameters.AddWithValue("@username", user); myCommand.Parameters.AddWithValue("@password", pass);
No comments posted yet

Your Answer:

Login to answer
202 Like 50 Dislike
Previous forums Next forums
Other forums

Dynamic Array using glob?
Is there an easier way to do this?

I am trying to get create a dyamic array based on files wi

db entry based on primary key
My "topics" table contains 10 entires
*--------------*
topicid topic
------

foreach loop, assistance request
I would like some guidance on the usage of foreach as I try to parse through a large database and wh

Run function every 5 mins ??
I have a function PostMessage()

How can I run it every 5 mins ??

change text color with a jQuery code
Hihow can I change the text in a asp:TextBox to a different color when I start typing using jQuery?I

simple ping code
been searchin the site/web and found code thats simple but doesnt work.

I have a personal we

Need help: how to catch acess of undefined class properties
Hello. I am learning OO with PHP and have hit a problem.
Some code runs as perfectly valid code,

Sequre login with cookies.
I want to build secure login with cookies. I just want your ideas about this, your suggestions. What

Dealing with code in db query
I am dealing with C code and I need to make sure it is encoded some how to ensure its integrity and

Buggy registration system
Hey, I just started scripting in PHP, and I ran into a few problems.
Code: <?php
includ

Sign up to write
Sign up now if you have flare of writing..
Login   |   Register
Follow Us
Indyaspeak @ Facebook Indyaspeak @ Twitter Indyaspeak @ Pinterest RSS



Play Free Quiz and Win Cash