Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add System.Data.SQLite.SQLiteCommand injection detection #59

Closed
JarLob opened this issue Jun 22, 2018 · 1 comment
Closed

Add System.Data.SQLite.SQLiteCommand injection detection #59

JarLob opened this issue Jun 22, 2018 · 1 comment

Comments

@JarLob
Copy link
Contributor

JarLob commented Jun 22, 2018

        public static void Get(string input)
        {
            string query = "SELECT * FROM aaa WHERE Name = '" + input + "'";
            SQLiteCommand command = new SQLiteCommand(query, Database.DBconnection);
            //command.Parameters.AddWithValue("@pInput", input);

            try
            {
                Database.OpenConn();
                DbDataReader output = command.ExecuteReader();
@JarLob
Copy link
Contributor Author

JarLob commented Nov 12, 2018

Closed by 067e8f6

@JarLob JarLob closed this as completed Nov 12, 2018
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant