Files
codeql-dataflow-sql-injection/README.org
2020-06-29 15:29:45 -07:00

316 B

SQL injection example

Setup and sample run

  ./build.sh

  ./admin create-db
  ./admin show-db

  # Regular user
  echo "sample user" | ./add-user
  ./admin show-db

  # Johnny Droptable
  echo "Johnny'); DROP TABLE users; -- " | ./add-user

  ./admin show-db