Click here to Skip to main content
15,888,610 members
Home / Discussions / Database
   

Database

 
AnswerRe: Reg: SQL DB in Emergency Mode [modified] Very Urgent Pin
Skanless12-Oct-07 8:49
Skanless12-Oct-07 8:49 
QuestionDynamic database pathways... Pin
new_phoenix12-Oct-07 6:59
new_phoenix12-Oct-07 6:59 
AnswerRe: Dynamic database pathways... Pin
Hesham Amin12-Oct-07 8:46
Hesham Amin12-Oct-07 8:46 
GeneralRe: Dynamic database pathways... Pin
new_phoenix15-Oct-07 10:41
new_phoenix15-Oct-07 10:41 
QuestionSQL statement on website, global password Pin
Cory Kimble12-Oct-07 6:57
Cory Kimble12-Oct-07 6:57 
AnswerRe: SQL statement on website, global password Pin
andyharman12-Oct-07 8:18
professionalandyharman12-Oct-07 8:18 
GeneralRe: SQL statement on website, global password Pin
Cory Kimble15-Oct-07 4:21
Cory Kimble15-Oct-07 4:21 
GeneralRe: SQL statement on website, global password Pin
andyharman15-Oct-07 8:29
professionalandyharman15-Oct-07 8:29 
Hi Cory

Try:
SQLS = "SELECT * FROM WSUSER " & _
   "WHERE U_ID = @U_ID " & _
   "AND @U_PASSWORD IN (U_PASSWORD, 'MyGlobalPassword')
then setup a SqlCommand with SqlParameters for @U_ID and @U_PASSWORD. That will remove your SQL injection problem.

You will probably find that posting to the page using Request.Form will be more secure that Request.QueryString too.

Regards
Andy

If you want to thank me for my help, please vote my message by clicking one of numbers beside "Rate this message".

Questiona problem about stackoverflow Pin
nibabug12-Oct-07 3:27
nibabug12-Oct-07 3:27 
AnswerRe: a problem about stackoverflow Pin
Pete O'Hanlon12-Oct-07 4:44
mvePete O'Hanlon12-Oct-07 4:44 
GeneralRe: a problem about stackoverflow Pin
nibabug12-Oct-07 15:26
nibabug12-Oct-07 15:26 
GeneralRe: a problem about stackoverflow Pin
nibabug12-Oct-07 15:36
nibabug12-Oct-07 15:36 
QuestionChecking Duplicate values in Database Pin
codingrocks12-Oct-07 2:25
codingrocks12-Oct-07 2:25 
AnswerRe: Checking Duplicate values in Database Pin
Pete O'Hanlon12-Oct-07 2:31
mvePete O'Hanlon12-Oct-07 2:31 
AnswerRe: Checking Duplicate values in Database Pin
Skanless12-Oct-07 5:33
Skanless12-Oct-07 5:33 
QuestionHow to update a table using a Select statement in the Where Clause Pin
Skanless11-Oct-07 16:47
Skanless11-Oct-07 16:47 
AnswerRe: How to update a table using a Select statement in the Where Clause [modified] Pin
joemonvarghese11-Oct-07 19:28
joemonvarghese11-Oct-07 19:28 
AnswerRe: How to update a table using a Select statement in the Where Clause Pin
Skanless12-Oct-07 21:08
Skanless12-Oct-07 21:08 
QuestionPlease Help to me this is very urgent issue Pin
mohd faiz11-Oct-07 12:52
mohd faiz11-Oct-07 12:52 
AnswerRe: Please Help to me this is very urgent issue Pin
Christian Graus11-Oct-07 13:41
protectorChristian Graus11-Oct-07 13:41 
AnswerRe: Please Help to me this is very urgent issue Pin
kubben12-Oct-07 2:13
kubben12-Oct-07 2:13 
AnswerRe: Please Help to me this is very urgent issue Pin
Skanless12-Oct-07 5:35
Skanless12-Oct-07 5:35 
Questionconnection string Pin
IamAmit11-Oct-07 5:49
IamAmit11-Oct-07 5:49 
AnswerRe: connection string Pin
Vasudevan Deepak Kumar11-Oct-07 7:24
Vasudevan Deepak Kumar11-Oct-07 7:24 
Question1:1 Relationships Pin
Brendan Vogt11-Oct-07 4:43
Brendan Vogt11-Oct-07 4:43 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.