Beefy Boxes and Bandwidth Generously Provided by pair Networks
go ahead... be a heretic
 
PerlMonks  

Re: Avoiding SQL insecurities

by ccn (Vicar)
on Jul 14, 2004 at 21:16 UTC ( [id://374445]=note: print w/replies, xml ) Need Help??


in reply to Avoiding SQL insecurities

try to use taint mode in your cgi scripts (-T flag)
perldoc perlsec

Replies are listed 'Best First'.
Re^2: Avoiding SQL insecurities
by samtregar (Abbot) on Jul 14, 2004 at 21:28 UTC
    That won't help avoid SQL injection attacks unless you also turn DBI's TaintIn option on. Otherwise DBI will happily accept a tainted string as an SQL query.

    -sam

Log In?
Username:
Password:

What's my password?
Create A New User
Domain Nodelet?
Node Status?
node history
Node Type: note [id://374445]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this?Last hourOther CB clients
Other Users?
Others surveying the Monastery: (4)
As of 2024-04-19 04:43 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    No recent polls found