Click here to Skip to main content
15,886,778 members
Please Sign up or sign in to vote.
0.00/5 (No votes)
See more:
What is URL injection and how does it work? I'm bit confused between SQL Injection and URL Injection.
Posted

SQL Injection's are URL based only. Issues are induced into database via URL because of bad way query is formed.
Read: SQL Injection[^]
 
Share this answer
 
Comments
Maciej Los 24-Mar-13 12:35pm    
Short and to the point!
+5!
Sandeep Mewara 24-Mar-13 12:59pm    
Thanks Maciej. :)
In the "Weird and Wonderful" we had our fun with the Alcatraz travel website. Their server is still open for injecting SQL via URLs. See Alcatraz ~ the tourist website[^]
See the messages in that thread for more hints on how it works - you can still test your skills.
 
Share this answer
 

This content, along with any associated source code and files, is licensed under The Code Project Open License (CPOL)



CodeProject, 20 Bay Street, 11th Floor Toronto, Ontario, Canada M5J 2N8 +1 (416) 849-8900