in reply to Re: is this script secured enough from internet attacksin thread is this script secured enough from internet attacks
Prepared statements and placeholders don't always work as expected (for example FreeTDS has problems there).
unpack could cover all injection attempts:
'INSERT INTO foo(bar) VALUES(0x'.unpack('H*',$value).')'
$ perl -e " print unpack q[H*], join q,@ARGV " 1 "<" 3 " Foo"
$ perl -e " print pack q[H*], join q,@ARGV " 313c3320466f6f
DejaVu Sans Mono
Droid Sans Mono
Envy Code R
Source Code Pro
The default, whatever it is
Results (367 votes). Check out past polls.