Discussion on:

Message 1 of 1
0 Votes
+ -
Completely inexcusable.
AzuMao 9th Feb 2010
All that's needed to make SQL injection impossible is sanitizing user
input with mysql_real_escape_string (or whatever function does this in
the language you're using).

How can that be to hard for so many professional coders out there?
Wtf?
ie8 fix

The best of ZDNet, delivered

ZDNet Newsletters

Get the best of ZDNet delivered straight to your inbox