FilterToSQLTest should have some more SQL injection attack related tests
------------------------------------------------------------------------

                 Key: GEOT-2248
                 URL: http://jira.codehaus.org/browse/GEOT-2248
             Project: GeoTools
          Issue Type: Task
          Components: data jdbc
    Affects Versions: 2.5.2
            Reporter: Andrea Aime


FilterToSql seems to do a fair job at escaping and interpreting parameters so 
to make sql injection attacks hard. Add anyways some more targeted tests, 
following the leads at:
- http://www.unixwiz.net/techtips/sql-injection.html
- http://en.wikipedia.org/wiki/SQL_injection
- http://www.securiteam.com/securityreviews/5DP0N1P76E.html

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: 
http://jira.codehaus.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

------------------------------------------------------------------------------
_______________________________________________
Geotools-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/geotools-devel

Reply via email to