You can also convert your URL LINK to FORM LINKS then you can test in the receiving 
page to see that the #http_referer# is coming from the Page you want it to.

this is a start.

Nathan
www.cftipsplus.com


---------- Original Message ----------------------------------
From: "Kevin Schmidt" <[EMAIL PROTECTED]>
Reply-To: [EMAIL PROTECTED]
Date: Mon, 13 Nov 2000 12:41:31 -0600

>I pass a few values through URL variable that I use in where clauses in my
>SQL.  I want to prevent someone from passing malicious SQL through that
>value.  What are my options??
>
>Kevin Schmidt
>Internet Services Director
>PWB Integrated Marketing and Communications
>Office: 734.995.5000
>Mobile: 734.649.4843
>
>
>
>------------------------------------------------------------------------------------------------
>Archives: http://www.mail-archive.com/[email protected]/
>Unsubscribe: http://www.houseoffusion.com/index.cfm?sidebar=lists or send a message 
>with 'unsubscribe' in the body to [EMAIL PROTECTED]
>

--
Nathan Stanford
=========================================
Mr. ColdFusion
[EMAIL PROTECTED]
http://www.cftipsplus.com/
http://www.cfm-resources.com/
=========================================
Coldfusion Tips Plus e-ZINE
To Subscribe send a blank email to:
[EMAIL PROTECTED]
or visit http://www.cftipsplus.com/
--
------------------------------------------------------------------------------------------------
Archives: http://www.mail-archive.com/[email protected]/
Unsubscribe: http://www.houseoffusion.com/index.cfm?sidebar=lists or send a message 
with 'unsubscribe' in the body to [EMAIL PROTECTED]

Reply via email to