Elance Exams Answers PDF file

-- PDF FILE --
Download PDF file of elance Zoho Creator Exam Answers
elance-zoho-creator-exam.pdf

What is wrong with this code? string email = emailTextbox; string SQL = "select * from users where username = '"+email+"' "; SqlCommand myCommand = new SQLCommand(SQL, myConnection) try { myConnection.Open(); SqlDataReader myReader=myCommand.ExecuteReader(); if (myReader.Read()) { ...

the string email will not have the right value.
There is nothing wrong in this code.
the string email will not have the right value and the SQL is subject to injection attacks.
the SQL is subject to injection attacks.
a SqlDataReader can't be instantiated from a SqlCommand object.
Top
  • Follows us our servcies
  • Facebook icon
  • Linkedin icon
  • twitter icon
  • rss icon
  • social icon