Click here to Skip to main content
16,016,227 members
Home / Discussions / ASP.NET
   

ASP.NET

 
Questionperiodic update of gridview Pin
shafyq19-Jun-07 21:39
shafyq19-Jun-07 21:39 
AnswerRe: periodic update of gridview Pin
shafyq19-Jun-07 21:55
shafyq19-Jun-07 21:55 
Questionasp.net, access database Pin
ling_luv19-Jun-07 21:36
ling_luv19-Jun-07 21:36 
AnswerRe: asp.net, access database Pin
Chetan Ranpariya19-Jun-07 21:50
Chetan Ranpariya19-Jun-07 21:50 
GeneralRe: asp.net, access database Pin
ling_luv19-Jun-07 21:59
ling_luv19-Jun-07 21:59 
QuestionPropagating .NET remoting exception back to the remoting client Pin
Talal Sultan19-Jun-07 21:30
Talal Sultan19-Jun-07 21:30 
QuestionPreventing SQL Injection [modified] Pin
ASPnoob19-Jun-07 20:56
ASPnoob19-Jun-07 20:56 
AnswerRe: Preventing SQL Injection Pin
Arun.Immanuel19-Jun-07 21:08
Arun.Immanuel19-Jun-07 21:08 
ASPnoob wrote:
I don't know how to modify the line
strSQL = String.Format("SELECT UserName FROM myTable WHERE (UserName='{0}');", txtUserName.Text)
to make the KillChars function work.


You can use the killChars like this:
strSQL = String.Format("SELECT UserName FROM myTable WHERE (UserName='{0}');", killChars(txtUserName.Text))

But you should use killChars to prevent SQL Injection.

The best way you can do this is by using stored procedure.

I would suggest you to read this http://www.codeproject.com/cs/database/SqlInjectionAttacks.asp[^].




Regards,
Arun Kumar.A

AnswerRe: Preventing SQL Injection Pin
badgrs19-Jun-07 23:33
badgrs19-Jun-07 23:33 
AnswerThis I too agree badgrs - chk it out here Pin
Sylvester george20-Jun-07 0:06
Sylvester george20-Jun-07 0:06 
Questionquery string Pin
saravanan0519-Jun-07 20:46
saravanan0519-Jun-07 20:46 
AnswerRe: query string Pin
Sylvester george19-Jun-07 21:12
Sylvester george19-Jun-07 21:12 
AnswerRe: query string Pin
Sathesh Sakthivel19-Jun-07 21:13
Sathesh Sakthivel19-Jun-07 21:13 
GeneralRe: query string Pin
Sandeep Akhare19-Jun-07 21:19
Sandeep Akhare19-Jun-07 21:19 
GeneralRe: query string Pin
Sathesh Sakthivel19-Jun-07 21:25
Sathesh Sakthivel19-Jun-07 21:25 
GeneralRe: query string Pin
Sandeep Akhare19-Jun-07 21:33
Sandeep Akhare19-Jun-07 21:33 
AnswerRe: query string Pin
Arun.Immanuel19-Jun-07 21:14
Arun.Immanuel19-Jun-07 21:14 
AnswerRe: query string Pin
Sandeep Akhare19-Jun-07 21:17
Sandeep Akhare19-Jun-07 21:17 
QuestionRe: query string Pin
saravanan0519-Jun-07 22:54
saravanan0519-Jun-07 22:54 
QuestionRe: query string Pin
Sandeep Akhare19-Jun-07 23:23
Sandeep Akhare19-Jun-07 23:23 
QuestionRe: query string Pin
saravanan0520-Jun-07 0:00
saravanan0520-Jun-07 0:00 
AnswerRe: query string Pin
Sandeep Akhare20-Jun-07 0:16
Sandeep Akhare20-Jun-07 0:16 
QuestionWho to Rewrite URL? Pin
chand1019-Jun-07 20:46
chand1019-Jun-07 20:46 
AnswerRe: Who to Rewrite URL? Pin
N a v a n e e t h19-Jun-07 21:03
N a v a n e e t h19-Jun-07 21:03 
GeneralRe: Who to Rewrite URL? Pin
chand1019-Jun-07 21:15
chand1019-Jun-07 21:15 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.