Results 1 to 5 of 5

Thread: SQL injecting

  1. #1
    Join Date
    Dec 2006
    Posts
    3,970
    Tokens
    0

    Latest Awards:

    Default SQL injecting

    How can it happen, i dont want my site to be hacked +rep if somone explains or gives me a link.
    Lets set the stage on fire, and hollywood will be jealous.

  2. #2
    Join Date
    Mar 2008
    Posts
    5,108
    Tokens
    3,780

    Latest Awards:


  3. #3
    Join Date
    Dec 2006
    Posts
    3,970
    Tokens
    0

    Latest Awards:

    Default

    Thanks
    Lets set the stage on fire, and hollywood will be jealous.

  4. #4
    Join Date
    Dec 2006
    Posts
    3,970
    Tokens
    0

    Latest Awards:

    Default

    K opening this again, ive made a function to remove bad characters from my string, I've got these on the list so far, is there any I've mised;

    & - gets replaced with &
    OR - with O<i></i>R
    ' - removed
    " - &quot;
    > - &lt;
    < - $gt;

    Would that be enough to stop injecting?
    Lets set the stage on fire, and hollywood will be jealous.

  5. #5
    Join Date
    Oct 2006
    Location
    Peterborough, UK
    Posts
    3,855
    Tokens
    216

    Latest Awards:

    Default

    Quote Originally Posted by Tom743 View Post
    K opening this again, ive made a function to remove bad characters from my string, I've got these on the list so far, is there any I've mised;

    & - gets replaced with &amp;
    OR - with O<i></i>R
    ' - removed
    " - &quot;
    > - &lt;
    < - $gt;

    Would that be enough to stop injecting?
    htmlentities( $string, ENT_QUOTES ); will be fine. (as in, just that)


    visit my internet web site on the internet
    http://dong.engineer/
    it is just videos by bill wurtz videos you have been warned

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •