View Single Post
Old 05-04-2008, 03:12 AM   #45 (permalink)
Salathe
Moderateur
RegEx Guru PHP Guru Top Contributor Advanced Programmer 
 
Salathe's Avatar
 
Join Date: Apr 2007
Posts: 1,347
Thanks: 5
Salathe is on a distinguished road
Default

Quote:
Originally Posted by Village Idiot View Post
I am not sure what that term means, could you please clarify what that is? I even googled the term and got nothing, so I dont think that is the types common name.
I was merely getting across the idea that the only injection discussed so far relates to, generally, items in the WHERE clause specifically comparing the value of a column be it integer, string or other type. I've no idea what the proper term is, so column-value was a sufficient stand in.

So we've looked at things like SELECT ... WHERE blah='<injection risk>' or INSERT ... SET blah='<injection risk>' but there are other vulnerable (for want of a slightly more descriptive word) parts to queries that people might not think about. That was my aim for discussion. Really, I'm just trying to steer the conversation away from the stale position it was at.
Salathe is offline  
Reply With Quote