Re: [PHP] Guru's advice needed ........[Security: SQL injection]

2004-03-19 Thread Chris Shiflett
--- Tariq Murtaza <[EMAIL PROTECTED]> wrote: > Can someone shed some light on how "SQL injection" attack occurs when > *magic_quotes_gpc *is"ON" and how it prevents when its "OFF". I'm not sure what "it" refers to there. In my opinion, relying on magic_quotes_gpc is very dangerous. In fact, I ju

[PHP] Guru's advice needed ........[Security: SQL injection]

2004-03-18 Thread Tariq Murtaza
*Dear Friends!* Can someone shed some light on how "SQL injection" attack occurs when *magic_quotes_gpc *is"ON" and how it prevents when its "OFF". To my understanding apostrophise are escaped automatically in POST/GET/COOKIE when its ON, so how it tends towards SQL Injection. Someone sugges