Re: Capturing a sql query

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



i am sorry but i would never post a querystring along with a form i
mean doing that and processing it will open your site to
vulnerabilities.

yes you could do it as a post variable and a hidden field but that
doesnt stop people from saving the html document to thier computer
altering the query and then submitting the form, i guess you could add
a check to make sure that the refering page is yourdomain.com but if i
am correct this could open up a world of trouble.

If however i am wrong someone please respond and correct me :)


-- 
Joseph Crawford Jr.
Codebowl Solutions
codebowl@xxxxxxxxx
802-558-5247

For a GMail account
contact me OFF-LIST

-- 
PHP Database Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php


[Index of Archives]     [PHP Home]     [PHP Users]     [Postgresql Discussion]     [Kernel Newbies]     [Postgresql]     [Yosemite News]

  Powered by Linux