Forum Moderators: coopster
We have modified the advanced search form on an oscommerce site. All of the additional fields on public side are dropdown boxes, not text input fields.
Does this provide any additional protection from SQL injection attacks? I'm wondering how anyone could run an attack since they can't try to put code in a text field.
Thanks
cg
I'm wondering how anyone could run an attack since they can't try to put code in a text field.