In this Demo:
Why we should not allow unscrubbed user input to be used in an AdHoc SQL statement in a web page. We will examine the C# code that allows user input to be executed against our SQL Server.
AKA
SQL Injection Attack thru a Text input field
Poorly coded webforms can leave your site open to cross site scripting attacks such as a SQL Injection. This can allow the discolsure of sensitive data or worse yet the loss or deletion of data by unathorized users.
Business Inquires:
For booking or registration information please email:
info @ ProDataMan. com
Professional Data Management
www.ProDataMan.com
LIKE us on Facebook
www.facebook.com/ProDataMan
Follow us on Twitter
www.Twitter.com/ProDataMan/
@ProDataMan