Penetration Testing mailing list archives

is JSP&servelet web app SQL Injection Free?


From: salamond <jarodzz () gmail com>
Date: Mon, 5 Jan 2009 16:28:31 +0800

Hi, all.

I'm new to pen-testing.

Just finished my tour with a couple of tools:
webscarab
sqlmap
ratproxy

But it shows OK for every page that I've been through.

I went through a couple of SQL Injection tutorial, and most of them
are focusing on
php or asp pages.

So here's my question, it may sound stupid, but
is there no SQL Injection problems in JSP&Java sevelet web app?

thanks

JarodZZ



Current thread: