|
<%@ Page Language="C#" AutoEventWireup="true" CodeFile="ProductsGood.aspx.cs" Inherits="ProductsGood" %>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" >
<head runat="server">
<title>View List of Products</title>
</head>
<body>
<form id="form1" runat="server">
<div>
Getting a List of Products<br />
<br />
<asp:GridView ID="GridView1" runat="server">
</asp:GridView>
<br />
<br />
To check the normal use of this page click here(check the proper query string):
<asp:HyperLink ID="HyperLink2" runat="server" NavigateUrl="ProductsGood.aspx?userID=sampleUser">here</asp:HyperLink><br />
<br />
To check SQL injection just write use this URL with injection query string:<br />
<br />
http://localhost:1537/SQLInjectionDemo/ProductsGood.aspx?userID=' UNION SELECT 0 AS
Expr1, password, userID FROM Users --<br />
<br />
or click
<asp:HyperLink ID="HyperLink1" runat="server" NavigateUrl="ProductsGood.aspx?userID=' UNION SELECT 0 AS Expr1, password, userID FROM Users --">here</asp:HyperLink></div>
</form>
</body>
</html>
|
By viewing downloads associated with this article you agree to the Terms of Service and the article's licence.
If a file you wish to view isn't highlighted, and is a text file (not binary), please
let us know and we'll add colourisation support for it.
I Started my Programming career with C++. Later got a chance to develop Windows Form applications using C#. Currently using C#, ASP.NET & ASP.NET MVC to create Information Systems, e-commerce/e-governance Portals and Data driven websites.
My interests involves Programming, Website development and Learning/Teaching subjects related to Computer Science/Information Systems. IMO, C# is the best programming language and I love working with C# and other Microsoft Technologies.
- Microsoft Certified Technology Specialist (MCTS): Web Applications Development with Microsoft .NET Framework 4
- Microsoft Certified Technology Specialist (MCTS): Accessing Data with Microsoft .NET Framework 4
- Microsoft Certified Technology Specialist (MCTS): Windows Communication Foundation Development with Microsoft .NET Framework 4
If you like my articles, please visit my website for more: www.rahulrajatsingh.com[^]