Question
Known insert record hack?
I'm having problems with comment spammers. For now, I've
removed the form table from the pages that allow comments from site
users. I'm using a microsoft access database and the
Dreamweaver-generated insert record function.
However, it is clear that it is still possible to insert a record into my comment database without having the form table available on a web page. Is this a known exploit? How is it done?
I guess I don't care how they do it, but I do want to know how to prevent it.
However, it is clear that it is still possible to insert a record into my comment database without having the form table available on a web page. Is this a known exploit? How is it done?
I guess I don't care how they do it, but I do want to know how to prevent it.
