sdyates has asked for the wisdom of the Perl Monks concerning the following question:
DWS mentioned: "If your script is for general consumption, I hope you're using -T and are untainting $SQLCommand. Otherwise, someone can slip something truly evil into your SQL stream."
It was a month ago and I forgto to follow up with him.I would love to learn more about using-T and untainted SQl commands. Security is integral. I want to do things right. Can some one steer me in the right direction?
Thanks
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Using-T and Untainting SQL
by lachoy (Parson) on Apr 29, 2002 at 15:58 UTC | |
|
Re: Using-T and Untainting SQL
by tomhukins (Curate) on Apr 29, 2002 at 15:55 UTC | |
|
Re: Using-T and Untainting SQL
by dws (Chancellor) on Apr 29, 2002 at 16:56 UTC | |
by sdyates (Scribe) on Apr 29, 2002 at 17:09 UTC | |
by PotPieMan (Hermit) on Apr 29, 2002 at 18:55 UTC | |
by sdyates (Scribe) on Apr 30, 2002 at 20:02 UTC | |
by PotPieMan (Hermit) on Apr 30, 2002 at 23:48 UTC |