This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
<?php | |
//Using php, Native approaches involve like htmlspecialchars() to escape special characters in the user input. | |
$Userdata; | |
$sanitized = htmlspecialchars($Userdata); | |
// output | |
echo " <p> Your data is:" . $sanitized . " </p>"; | |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
<?php | |
http: //testphp.vulnweb.com/search.php?test=query | |
$pdo = new PDO('msql:host=vulnweb.com;dbname=vulnweb', 'dbuser', 'dbpassword'); | |
$query = "SELECT * FROM searchabletable WHERE topic LIKE :keyword"; | |
$stmt = $pdo->prepare($query); | |
$stmt->bindValue(':keyword', '%' . $variable . '%'); | |
$stmt->execute(); | |
// fetch results |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
<?php | |
/** | |
* I'm nnot the author but for good reference | |
* Class RD_Text_Extraction | |
* | |
* Example usage: | |
* | |
* $response = RD_Text_Extraction::convert_to_text($path_to_valid_file); | |
* |
NewerOlder