Re: Protection from SQL injection
- From: Thomas Kellerer <spam_eater(at)gmx(dot)net>
- To: pgsql-sql(at)postgresql(dot)org
- Subject: Re: Protection from SQL injection
- Date: Sat, 26 Apr 2008 23:32:58 +0200
- Message-id: <fv0727$cge$1@ger.gmane.org> <text/plain>
Thomas Mueller wrote on 26.04.2008 18:32:
Literals can still be used when using query tools, or in applications considered 'safe'.
I fail to see how the backend could distinguish between a query sent by a query
tool and a query sent by an "application".
Thomas
Home |
Main Index |
Thread Index