Expand all |
Post comment
Hacking Web 2.0 Applications with Firefox
2006-10-18
Lizard (2 replies)
Lizard (2 replies)
|
Hacking Web 2.0 Applications with Firefox
Expand all |
Post comment
Hacking Web 2.0 Applications with Firefox
2006-10-18 Lizard (2 replies) |
|
|
Privacy Statement |
I am not sure how one can tell this from the .js function code. Is there something I am missing? It seems to me that it is more likely "maybe vulnerable" instead of "is vulnerable", since from my understanding it would depend on the implementation of the service and if there were steps taken in the service to block sql injection. I am just trying to understand better since I have similar calls in code I have written, although I do validate input into the service. Thanks for the nice article by the way.
[ reply ]
Link to this comment: http://www.securityfocus.com/comments/infocus/1879/712#712