[thechat] Wedding site

Luther, Ron Ron.Luther at compaq.com
Fri Jul 13 16:21:33 CDT 2001


Hi Kev,


If you're bounding the guest's entry with single quotes before shuffling it
into the database, anyone entering a single quote in their comments would
cause a premature truncation of the statement and could bomb the sql.

Just a guess,

RonL.

-----Original Message-----
From: Kevin Stevens [mailto:kjs at ratking.co.uk]
> Tried to leave a message in your guest book - but I don't think it liked
the
> '   in Y'all!

This is curious, any ideas why that should happen? It's an Access db coded
with ASP




More information about the thechat mailing list