Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

1.5 Mark Question I wo You have the following two tables in a MySQL database called it230 order statuses user PK int(11) varchar(30) PK varchar(32)

image text in transcribed

1.5 Mark Question I wo You have the following two tables in a MySQL database called it230 order statuses user PK int(11) varchar(30) PK varchar(32) varchar(32) user name You also have the following track.php page that allows a user to enter an order chtnl> cforn action-"track.php" method-"post" Please enter your order number to track the status of your order cinput type-"text nane-"order_nunber>br> cinput type-"subnit" value-"Track c/body ?)( ro ysqli fetch assac(Sresult) echo "Your order is: ".Sron status"1: else ( echo "We apologize, your order was not found nysqli close($conn); 2> number and then connects to the database to return the status of that order Suppose that a user types the following into the order number field in the page 1. What will happen? [0.25 mark] 2. What do we call this type of attack? [0.25 mark] 3.Re-write track.php so, it prevents this attack. [1 mark] 1 union select concat(user_name password) as status from users

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

DB2 11 The Database For Big Data And Analytics

Authors: Cristian Molaro, Surekha Parekh, Terry Purcell, Julian Stuhler

1st Edition

1583473858, 978-1583473856

More Books

Students also viewed these Databases questions

Question

What is the objective of negotiation?

Answered: 1 week ago

Question

Discuss the methods of training and development

Answered: 1 week ago