Tycoon Talk
Become a Big fish!
The number 1 forum for online business!
Post topics, ask questions, share your knowledge.
Tycoon Talk is part of Freelancer.com - find skilled workers online at a fraction of the cost.

The Database Forum


You are currently viewing our The Database Forum as a guest. Please register to participate.
Login



Reply
Old 05-16-2009, 01:54 PM Textarea attack
Truly's Avatar
Ultra Talker

Posts: 322
Trades: 0
If I have a limit in the database on the number of characters that a field can hold is that enough to stop someone from dropping a massive file in the query to take down the server or do I need to check the length ahead of time server side?
__________________
DVD Movie Release Database:
Please login or register to view this content. Registration is FREE
Truly is online now
Reply With Quote
View Public Profile
 
 
Register now for full access!
Old 05-20-2009, 11:24 AM Re: Textarea attack
Super Talker

Posts: 134
Trades: 0
you have to check every kind of data that is coming from forms or from the requeststring
__________________

Please login or register to view this content. Registration is FREE

Check out the Facebook Clone build with Jcow SNS at
Please login or register to view this content. Registration is FREE
, it is free and it always will be
Falcone is offline
Reply With Quote
View Public Profile
 
Old 05-29-2009, 07:53 PM Re: Textarea attack
Junior Talker

Posts: 2
Trades: 0
That would be a very good idea
__________________
Hosting Done Right -
Please login or register to view this content. Registration is FREE
hostcadet is offline
Reply With Quote
View Public Profile
 
Old 05-29-2009, 08:47 PM Re: Textarea attack
Novice Talker

Posts: 9
Name: Rajeev
Location: USA
Trades: 0
do substring during insert with a simple code..
__________________

Please login or register to view this content. Registration is FREE
dostind is offline
Reply With Quote
View Public Profile Visit dostind's homepage!
 
Old 05-29-2009, 08:51 PM Re: Textarea attack
willcode4beer's Avatar
Super Moderator

Posts: 1,533
Name: Paul Davis
Location: San Francisco
Trades: 1
Quote:
Originally Posted by dostind View Post
do substring during insert with a simple code..
Not that simple.
You need to clean every piece of data before calling the database.

[IMG]file:///tmp/moz-screenshot.jpg[/IMG]
__________________

Please login or register to view this content. Registration is FREE

willcode4beer is offline
Reply With Quote
View Public Profile
 
Old 06-03-2009, 08:58 AM Re: Textarea attack
Novice Talker

Posts: 9
Name: Leon
Trades: 0
Quote:
Originally Posted by willcode4beer View Post
Not that simple.
You need to clean every piece of data before calling the database.

[IMG]file:///tmp/moz-screenshot.jpg[/IMG]

Not simple at all (( I try to understand and even try to do by myself... Nothing... Its like another planet for me. SEO -yes, copywriting - yes, but no database )))
Leon Dudovich is offline
Reply With Quote
View Public Profile
 
Old 06-08-2009, 12:52 PM Re: Textarea attack
Truly's Avatar
Ultra Talker

Posts: 322
Trades: 0
willcode4beer thats a funny cartoon, nice find
__________________
DVD Movie Release Database:
Please login or register to view this content. Registration is FREE
Truly is online now
Reply With Quote
View Public Profile
 
Reply     « Reply to Textarea attack
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off





   
RSS Feed  Feeds: RSS   JS   XML
RSS Feed  Feeds for this forum: RSS   JS   XML



Page generated in 1.66921 seconds with 12 queries