Click here to Skip to main content
15,887,683 members
Home / Discussions / Visual Basic
   

Visual Basic

 
AnswerRe: How to pass a parameter to windows application form the way we can do in a web form Pin
Dave Kreskowiak8-Feb-09 5:34
mveDave Kreskowiak8-Feb-09 5:34 
AnswerRe: How to pass a parameter to windows application form the way we can do in a web form Pin
vaghelabhavesh8-Feb-09 10:36
vaghelabhavesh8-Feb-09 10:36 
AnswerRe: How to pass a parameter to windows application form the way we can do in a web form Pin
MohammadAmiry8-Feb-09 19:31
MohammadAmiry8-Feb-09 19:31 
QuestionError in Update & Insert Statement Pin
Vikash Yadav7-Feb-09 21:20
Vikash Yadav7-Feb-09 21:20 
GeneralRe: Error in Update & Insert Statement Pin
Luc Pattyn8-Feb-09 4:39
sitebuilderLuc Pattyn8-Feb-09 4:39 
GeneralRe: Error in Update & Insert Statement Pin
Vikash Yadav8-Feb-09 17:01
Vikash Yadav8-Feb-09 17:01 
AnswerRe: Error in Update & Insert Statement Pin
Dave Kreskowiak8-Feb-09 5:21
mveDave Kreskowiak8-Feb-09 5:21 
GeneralRe: Error in Update & Insert Statement Pin
paas8-Feb-09 8:08
paas8-Feb-09 8:08 
Why is his code "very broken" from a "SQL Injection" standpoint? He is working with an Access MDB, and even if his UserID was being passed as a string, you can not concatenate queries in Access, so that does not seem to be an "injection" concern. And, since UserID is actually being passed as an integer, I do not see how a nefarious user would be able to sneak an 'Or' conditional into the where command that will automatically make the result True. What is the 'SQL Injection' issue I am missing in his query?

The potential problem I see with this code is that if 'Password' can contain single quotes, he is not escaping those single quotes in the query being built, and that would create a syntax error. Now parameterized queries would resolve that potential issue, but that can also be handled easily with a Replace statement, and without the use of parameterized queries.
GeneralRe: Error in Update & Insert Statement Pin
Dave Kreskowiak8-Feb-09 13:18
mveDave Kreskowiak8-Feb-09 13:18 
GeneralRe: Error in Update & Insert Statement Pin
Vikash Yadav8-Feb-09 18:25
Vikash Yadav8-Feb-09 18:25 
GeneralRe: Error in Update & Insert Statement Pin
Dave Kreskowiak9-Feb-09 1:45
mveDave Kreskowiak9-Feb-09 1:45 
AnswerRe: Error in Update & Insert Statement Pin
Vimalsoft(Pty) Ltd8-Feb-09 22:22
professionalVimalsoft(Pty) Ltd8-Feb-09 22:22 
Questioncan anyone help me in making an application of blood donors information service. Pin
neetu1497-Feb-09 10:04
neetu1497-Feb-09 10:04 
AnswerRe: can anyone help me in making an application of blood donors information service. Pin
vaghelabhavesh7-Feb-09 11:17
vaghelabhavesh7-Feb-09 11:17 
GeneralRe: thankyou so much. Pin
neetu14910-Feb-09 8:04
neetu14910-Feb-09 8:04 
AnswerRe: can anyone help me in making an application of blood donors information service. Pin
vigylant7-Feb-09 11:33
vigylant7-Feb-09 11:33 
AnswerRe: can anyone help me in making an application of blood donors information service. Pin
Christian Graus8-Feb-09 9:14
protectorChristian Graus8-Feb-09 9:14 
GeneralRe: can anyone help me in making an application of blood donors information service. Pin
Jon_Boy9-Feb-09 7:18
Jon_Boy9-Feb-09 7:18 
GeneralRe: thankyou so much. Pin
neetu14910-Feb-09 8:07
neetu14910-Feb-09 8:07 
AnswerRe: can anyone help me in making an application of blood donors information service. Pin
EliottA8-Feb-09 13:50
EliottA8-Feb-09 13:50 
AnswerRe: can anyone help me in making an application of blood donors information service. Pin
Tom Deketelaere9-Feb-09 0:24
professionalTom Deketelaere9-Feb-09 0:24 
GeneralRe: can anyone help me in making an application of blood donors information service. Pin
EliottA9-Feb-09 2:03
EliottA9-Feb-09 2:03 
GeneralRe: thankyou so much. Pin
neetu14910-Feb-09 8:09
neetu14910-Feb-09 8:09 
QuestionChange my IP with New IP Pin
ivo757-Feb-09 7:55
ivo757-Feb-09 7:55 
AnswerRe: Change my IP with New IP Pin
vaghelabhavesh7-Feb-09 11:21
vaghelabhavesh7-Feb-09 11:21 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.