Rocksolid Light

Welcome to RetroBBS

mail  files  register  newsreader  groups  login

Message-ID:  

Do not underestimate the value of print statements for debugging.


devel / comp.lang.php / Re: Data sanitation for mysql queries.

SubjectAuthor
o Re: Data sanitation for mysql queries.Mi Na

1
Re: Data sanitation for mysql queries.

<d8a73551-9194-494e-8fc9-de2b3fe9cfa2n@googlegroups.com>

  copy mid

https://www.rocksolidbbs.com/devel/article-flat.php?id=296&group=comp.lang.php#296

  copy link   Newsgroups: comp.lang.php
X-Received: by 2002:a05:622a:209:: with SMTP id b9mr3077331qtx.136.1627027187878;
Fri, 23 Jul 2021 00:59:47 -0700 (PDT)
X-Received: by 2002:a25:40c:: with SMTP id 12mr4965240ybe.265.1627027187712;
Fri, 23 Jul 2021 00:59:47 -0700 (PDT)
Path: i2pn2.org!i2pn.org!weretis.net!feeder6.news.weretis.net!news.snarked.org!border2.nntp.dca1.giganews.com!nntp.giganews.com!news-out.google.com!nntp.google.com!postnews.google.com!google-groups.googlegroups.com!not-for-mail
Newsgroups: comp.lang.php
Date: Fri, 23 Jul 2021 00:59:47 -0700 (PDT)
In-Reply-To: <kVvps.360$W21.262@newsfe27.iad>
Injection-Info: google-groups.googlegroups.com; posting-host=193.40.120.146; posting-account=s3OxiwkAAABE2kqiXXKi7ZVC4Hsq_zQz
NNTP-Posting-Host: 193.40.120.146
References: <56c7dfc2-c368-4403-8d7d-19233367f2c2@googlegroups.com> <kVvps.360$W21.262@newsfe27.iad>
User-Agent: G2/1.0
MIME-Version: 1.0
Message-ID: <d8a73551-9194-494e-8fc9-de2b3fe9cfa2n@googlegroups.com>
Subject: Re: Data sanitation for mysql queries.
From: ya12983@mail.com (Mi Na)
Injection-Date: Fri, 23 Jul 2021 07:59:47 +0000
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: base64
Lines: 26
 by: Mi Na - Fri, 23 Jul 2021 07:59 UTC

Daniel Pitts kirjutas reede, 16. november 2012 kl 20:49:51 UTC+2:
> On 11/16/12 10:10 AM, cph wrote:
> > FOr sanitizing user input that will be part of a mysql query is addslashes() good enough to prevent mysql injection?
> >
>
> Short answer is no.
>
> Prepared statements help a lot.
>
> Using the correct functions help too:
> <http://www.php.net/manual/en/mysqli.real-escape-string.php>

👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽👽

1
server_pubkey.txt

rocksolid light 0.9.81
clearnet tor