|
|
| Welcome to the Monastery | |
| PerlMonks |
(tye)Re: Web Securityby tye (Cardinal) |
| on Jul 12, 2002 at 17:49 UTC ( #181354=note: print w/ replies, xml ) | Need Help?? |
|
What were you afraid it was going to do? Perhaps this?
$node= '"; delete from nodes; ...'; I'm not defending code like that, I'm just pointing out something that I've always been told was a horrid security risk ("They could do anything they wanted to your data!") that isn't as bad (AFAICT) as lots of people are making it out to be. Sure, they could probably launch a denial of service attack by making your SELECT extremely complicated if they could guess some of the structure of your database. (: - tye (but my friends call me "Tye")
In Section
Meditations
|
|
||||||||||||||||||||||