You don't know how much code he would have to refactor to make it all usable in DBI. It might be a day's worth of work, or a month.
Creating a DBI handle will only take a few minutes and can be a test account. This is certainly easier, for a quick fix, than rewriting the whole thing to use DBI.
In reply to Re^3: untainting or encoding for shelled sqlplus update
by Herkum
in thread untainting or encoding for shelled sqlplus update
by goibhniu
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |