What is SQL injection?
Answers were Sorted based on User's Feedback
Answer / p.ramakrishna
An SQL injection attack "injects" or manipulates SQL code
by adding unexpected SQL to a query.
Many web pages take parameters from web user, and make SQL
query to the database. Take for instance when a user login,
web page that user name and password and make SQL query to
the database to check if a user has valid name and password.
Username: ' or 1=1 ---
Password: [Empty]
This would execute the following query against the users
table:
select count(*) from users where userName='' or 1=1 --' and
userPass=''
| Is This Answer Correct ? | 5 Yes | 1 No |
Answer / sathya s.d.
using sql query in a login id and password and automaticaly
login by verifying raw query with database..
| Is This Answer Correct ? | 0 Yes | 0 No |
i wand basic interview based questions in asp.net and vb.net
I create small website, i want accept all the browser this website? what will do?
How you can manage the state of application at the server side in ASP.NET?
what is diffrence between debug class and trace class in asp.net ?
Which adapter should you use, if you want to get the data from an access database?
What are validator? Name the validation controls in asp.net? How do you disable them?
What r Callbacks in ASP.NET?
If cookies is disabled in client browser will session work ?
Where would you use an IHttpModule, and what are the limitations of anyapproach you might take in implementing one?
Can you clarified A Web service can only be written in .NET or not?
What are the merits and demerits of viewstate?
What is strong name and which tool is used for this ?
Visual Basic (800)
C Sharp (3816)
ASP.NET (3180)
VB.NET (461)
COM+ (79)
ADO.NET (717)
IIS (369)
MTS (11)
Crystal Reports (81)
BizTalk (89)
Dot Net (2435)
Exchange Server (362)
SharePoint (720)
WCF (340)
MS Office Microsoft (6963)
LINQ Language-Integrated Query (317)
WPF (371)
TypeScript (144)
Microsoft Related AllOther (311)