in reply to Re^2: untainting or encoding for shelled sqlplus update
in thread untainting or encoding for shelled sqlplus update
++ I obviously don't work directly with the DB enough either, but your example and reference give me a more exhaustive list of chars, etc. to untaint. That may do just the trick for now (though ikegami's comment convinces me that using the DBI quote function is the right thing).
#my sig used to say 'I humbly seek wisdom. '. Now it says:
use strict;
use warnings;
I humbly seek wisdom.
|
---|
Replies are listed 'Best First'. | |
---|---|
Re^4: untainting or encoding for shelled sqlplus update
by tachyon-II (Chaplain) on May 15, 2008 at 22:13 UTC | |
by goibhniu (Hermit) on May 16, 2008 at 14:21 UTC | |
by tachyon-II (Chaplain) on May 17, 2008 at 00:33 UTC | |
by goibhniu (Hermit) on May 19, 2008 at 14:06 UTC |
In Section
Seekers of Perl Wisdom