Wes wrote:

> CFQUERYPARAM will validate the data.

No, it will separate parameters from the SQL statement so that
reagardless of what is in the parameters, it will not be executed.

> this script rips out ALL harmful SQL
> statements that someone might try to include into a URL or FORM field entry.

Right.

Jochem
[Todays Threads] [This Message] [Subscription] [Fast Unsubscribe] [User Settings] [Donations and Support]

Reply via email to