From 1bf83d8635848bef6fca6d0f63dc3bf2084c0769 Mon Sep 17 00:00:00 2001 From: eiffel-org Date: Fri, 3 Feb 2017 13:09:51 +0000 Subject: [PATCH] Update wikipage EiffelStore SQL injection. (Signed-off-by:javier). git-svn-id: https://svn.eiffel.com/eiffel-org/trunk@1761 abb3cda0-5349-4a8f-a601-0c33ac3a8c38 --- .../eiffelstore/EiffelStore-SQL-injection.wiki | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/documentation/trunk/solutions/database-access/eiffelstore/EiffelStore-SQL-injection.wiki b/documentation/trunk/solutions/database-access/eiffelstore/EiffelStore-SQL-injection.wiki index 34d6aadd..f2976a05 100644 --- a/documentation/trunk/solutions/database-access/eiffelstore/EiffelStore-SQL-injection.wiki +++ b/documentation/trunk/solutions/database-access/eiffelstore/EiffelStore-SQL-injection.wiki @@ -2,3 +2,11 @@ [[Property:weight|4]] [[Property:title|EiffelStore SQL injection]] [[Property:weight|4]] + + + +A SQL injection attack is a coding technique that consists of insertion or "injection" of a SQL query via the input data (passing unsafe data. ) from the client to the application. A successful SQL injection, can read sensitive data from the database, modify database data (Insert/Update/Delete), and become administrators of the database server. To learn more about SQL injection read the following articles. + +* [https://en.wikipedia.org/wiki/SQL_injection https://en.wikipedia.org/wiki/SQL_injection] +* [https://www.owasp.org/index.php/SQL_injection https://www.owasp.org/index.php/SQL_injection] +