Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
a904guy
on Aug 5, 2013
|
parent
|
context
|
favorite
| on:
SQL Injection Galore
Django...
https://github.com/search?q=extension%3Apy+os.system+%22requ...
ris
on Aug 5, 2013
|
next
[–]
I only found one exploitable example browsing the first few pages, whereas the majority of the OP's results looked fairly exploitable.
fjcaetano
on Aug 5, 2013
|
prev
[–]
The difference is that SQL injection will only happen when using raw queries.
System (as you mentioned) or EXEC injections, however, may get out of hand.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: