dimanche 21 juin 2020

Is this site really secure against sql-injection?

A website I’m using frequently claims to be "Secure against the most common types of hacking, like SQL-Injection", but some of its search bars lead to an error page with an undefined 500-error when I insert only double-quotes (“), although this doesn't happen with single-quotes. I read that this is an indicator of SQL-Injection vulnerability, so is this site really secure? Are there other ways to test this?




Aucun commentaire:

Enregistrer un commentaire