|
Description: | | SQL injection is a vulnerability that allows an attacker to alter backend SQL statements by manipulating the user input. An SQL injection occurs when web applications accept user input that is directly placed into a SQL statement and doesn't properly filter out dangerous characters. |
|
Impact: | | An attacker may execute arbitrary SQL statements on the vulnerable system. This may compromise the integrity of your database and/or expose sensitive information. |
|
Affected OS: | | Windows, Solaris, Other Unix, FreeBSD, Linux |
|
Reference: | | none
|
|