Question
SQL Injection attack
After an SQL injection attack I followed the advice to use
cfqueryparam in my cfquery statements. Unfortunatley this does not
seem to have worked as many records in my database have again been
appended with scripts linking to javascript files on another
website.
I haven't coded in Coldfusion in a while and would really appreciate it if someone could take a look at the code of one of my pages and let me know if I have missed anything or miss coded the cfqueryparam tag.
Thanks in advance
Neil
I haven't coded in Coldfusion in a while and would really appreciate it if someone could take a look at the code of one of my pages and let me know if I have missed anything or miss coded the cfqueryparam tag.
Thanks in advance
Neil
