KnowledgeHub
Questions
Tags
Users
Search
Alex Rivera
|
Logout
Questions tagged
sql-injection
37 questions
Follow Tag
Sort by:
Newest
Votes
Active
9
votes
1
answers
SQL safety when storing data using WordPress built-in functions
wordpress
security
sql-injection
asked 2013-04-20T16:48:51.373
13
votes
1
answers
Parameterizing SQL queries in Ruby + TinyTDS
ruby
sql-injection
tiny-tds
asked 2013-01-24T22:55:32.133
11
votes
5
answers
Prevent SQL Injection in ORDER BY clause
c#
sql-server-2008
sql-order-by
sql-injection
asked 2013-01-14T11:10:02.063
8
votes
4
answers
What does this preg_replace do? (/[\xF0-\xF7].../)
php
mysql
regex
utf-8
sql-injection
asked 2012-11-30T23:02:48.860
8
votes
2
answers
Sqlmap traffic capture
sql
sql-injection
penetration-testing
sqlmap
asked 2012-08-11T14:02:35.377
16
votes
4
answers
How can I securely allow user defined SQL queries?
sql
sql-injection
prepared-statement
asked 2012-07-12T23:07:05.987
16
votes
9
answers
Prevent SQL injection attacks in a Java program
java
mysql
sql
sql-injection
asked 2012-03-01T12:56:33.643
251
votes
10
answers
How can prepared statements protect from SQL injection attacks?
sql
security
sql-injection
prepared-statement
asked 2011-11-24T23:17:08.220
59
votes
3
answers
CSRF, XSS and SQL Injection attack prevention in JSF
jsf
xss
sql-injection
csrf
owasp
asked 2011-10-11T06:30:15.577
16
votes
4
answers
Escaping user input from database necessary?
php
mysql
escaping
sql-injection
user-input
asked 2011-09-16T07:53:30.783
10
votes
5
answers
regex expressions prevent sql/script injection
regex
sql-injection
javascript-injection
asked 2011-09-15T09:50:21.337
98
votes
12
answers
Can parameterized statement stop all SQL injection?
sql
prepared-statement
sql-injection
code-injection
exploit
asked 2011-07-22T05:31:11.460
60
votes
5
answers
Reference: What is a perfect code sample using the MySQL extension?
php
mysql
security
sql-injection
asked 2011-06-01T08:09:03.803
13
votes
1
answers
How to execute arbitrary parameterized SQL in rails
sql
ruby-on-rails
sql-injection
asked 2010-12-29T18:20:46.887
9
votes
4
answers
Deciphering this XSS attack
security
iis
sql-injection
asked 2010-09-21T14:00:50.293
20
votes
6
answers
In PHP when submitting strings to the database should I take care of illegal characters using htmlspecialchars() or use a regular expression?
php
special-characters
sql-injection
illegal-characters
asked 2010-06-07T20:46:31.837
13
votes
9
answers
Are there any differences between SQL Server and MySQL when it comes to preventing SQL injection?
php
sql
sql-server
security
sql-injection
asked 2010-04-09T15:37:08.517
13
votes
9
answers
Decoding mysql_real_escape_string() for outputting HTML
php
sql-injection
html-encode
mysql-real-escape-string
asked 2010-04-04T02:17:34.453
12
votes
1
answers
How is advised to use the contentResolver's delete method to be injection safe?
android
sql-injection
android-contentresolver
android-sdk-2.1
asked 2010-02-27T07:29:17.767
10
votes
6
answers
How to confirm SQL injection
sql
sql-injection
security
asked 2009-11-30T10:57:36.350
175
votes
17
answers
Java - escape string to prevent SQL injection
java
sql
regex
escaping
sql-injection
asked 2009-11-28T16:11:13.833
10
votes
13
answers
Are sql injection attacks only a threat on a page that has a form?
sql
security
web-applications
sql-injection
asked 2009-11-11T17:56:57.240
36
votes
20
answers
Is SQL injection a risk today?
php
sql
sql-injection
asked 2009-11-05T21:40:56.020
43
votes
4
answers
how safe are PDO prepared statements
php
mysql
security
pdo
sql-injection
asked 2009-08-21T22:47:09.557
42
votes
5
answers
How does SQL query parameterisation work?
sql
security
sql-injection
asked 2009-08-11T21:45:18.380
38
votes
4
answers
Does mysql_real_escape_string() FULLY protect against SQL injection?
php
mysql
sql-injection
asked 2009-08-02T23:37:46.487
47
votes
9
answers
A good way to escape quotes in a database query string?
python
database
escaping
sql-injection
asked 2009-05-22T09:16:28.807
71
votes
4
answers
Examples of SQL Injections through addslashes()?
php
sql
sql-injection
security
asked 2009-05-13T23:38:10.610
10
votes
3
answers
Php on zend, how to escape a variable for a query?
php
mysql
zend-framework
sql-injection
asked 2009-03-28T18:30:51.647
12
votes
6
answers
Ways to prevent SQL Injection Attack & XSS in Java Web Application
java
regex
xss
sql-injection
asked 2009-01-27T20:12:16.850
1231
votes
13
answers
How does the SQL injection from the "Bobby Tables" XKCD comic work?
security
validation
sql-injection
asked 2008-12-01T21:50:10.220
90
votes
9
answers
Are Parameters really enough to prevent Sql injections?
asp.net
sql
database
sql-injection
asked 2008-11-20T20:06:43.940
22
votes
16
answers
How can I avoid SQL injection attacks in my ASP.NET application?
.net
asp.net
sql
security
sql-injection
asked 2008-11-20T11:49:07.423
56
votes
3
answers
Parameterized Queries with LIKE and IN conditions
.net
sql
parameters
sql-injection
parameterized
asked 2008-11-19T19:56:07.520
160
votes
19
answers
Can I protect against SQL injection by escaping single-quote and surrounding user input with single-quotes?
sql
security
sql-server-2000
sql-injection
sanitization
asked 2008-09-26T12:41:25.720
1287
votes
17
answers
How can I sanitize user input with PHP?
php
security
xss
sql-injection
user-input
asked 2008-09-24T20:20:39.650
13
votes
14
answers
Is there some way to inject SQL even if the ' character is deleted?
sql
database
sql-injection
asked 2008-09-16T12:36:16.787