Il giorno 12/nov/04, alle 13:14, Ilya Vyatkin ha scritto:

In my web-application SQL Transformer takes user input and uses it "as
is" in its request string.
Are there simple ways to process user input to prevent SQL Injection?

Use <esql:parameter>.

        Ugo

--
Ugo Cei - http://beblogging.com/

Attachment: smime.p7s
Description: S/MIME cryptographic signature



Reply via email to