how to replace and string in a "SELECT ... IN ()"

Lawrence D'Oliveiro ldo at geek-central.gen.new_zealand
Mon Sep 29 05:11:19 EDT 2008


In message <mailman.1547.1222447134.3487.python-list at python.org>, D'Arcy
J.M. Cain wrote:

> On Fri, 26 Sep 2008 11:00:59 -0500
> "Michael Mabin" <d3vvnull at gmail.com> wrote:
>
>> So we can drop a table in an in clause?  How is this a use case. 
>> Cartoons are funny but actual proof that this example using an in-clause
>> provides an exploit would be more helpful I think.
> 
> I'm not sure what proof you require.

I would say Mr Mabin is displaying thinking characteristic of a PHP
programmer
<http://groups.google.co.nz/group/nz.comp/msg/4c2a4d220499dafd>. :)




More information about the Python-list mailing list