Are SQL queries escaped to prevent SQL injection attacks?
Thanks
Are SQL queries escaped to prevent SQL injection attacks?
Thanks
I assume you mean the parameter values?
Possibly the parameters use binding, which prevents this attack, but I’m not certain.
I’d be interested in seeing results of your testing : )
Hi Mishav,
Yep that probably means its all escaped then! I’l have to do some testing and ill report back.
Did you ever test this vulnerability?