What is SQL injection?
Answers were Sorted based on User's Feedback
Answer / p.ramakrishna
An SQL injection attack "injects" or manipulates SQL code
by adding unexpected SQL to a query.
Many web pages take parameters from web user, and make SQL
query to the database. Take for instance when a user login,
web page that user name and password and make SQL query to
the database to check if a user has valid name and password.
Username: ' or 1=1 ---
Password: [Empty]
This would execute the following query against the users
table:
select count(*) from users where userName='' or 1=1 --' and
userPass=''
| Is This Answer Correct ? | 5 Yes | 1 No |
Answer / sathya s.d.
using sql query in a login id and password and automaticaly
login by verifying raw query with database..
| Is This Answer Correct ? | 0 Yes | 0 No |
What is Hybrid dictionary
How does session authentication work?
What is advantage of viewstate and what are benefits ?
What is %20 in a url?
Which property needs to be set for script manager control to extend the time before throwing time out expection if no response is received from the server?
what is difference between .net 3.0 and 3.5
How do I debug an asp.net application that was not written with visual studio.net and that does not use code-behind?
What are the advantages and disadvantages of viewstate ?
What is the difference between a.Equals(b) and a == b?
Which data types are supported by the RangeValidator control?
How to store a dataset in a viewstate?
About Garbage Collector?
Visual Basic (800)
C Sharp (3816)
ASP.NET (3180)
VB.NET (461)
COM+ (79)
ADO.NET (717)
IIS (369)
MTS (11)
Crystal Reports (81)
BizTalk (89)
Dot Net (2435)
Exchange Server (362)
SharePoint (720)
WCF (340)
MS Office Microsoft (6963)
LINQ Language-Integrated Query (317)
WPF (371)
TypeScript (144)
Microsoft Related AllOther (311)