InvestorsHub Logo
icon url

Mattu

12/25/05 7:49 PM

#62256 RE: cosmoworld7 #62246

Edit_profile is the name of the ASP, which is public knowledge, it's not the name of a column.

icon url

Bob Zumbrunnen

12/27/05 5:02 PM

#62302 RE: cosmoworld7 #62246

We weren't discussing field names in the db (SQL Server) and giving the names of ASP files is not a security risk as far as I know. Besides, anyone can look at their URL to determine what ASP module is in use at the time. For example, as I'm writing this, I can look up and see I'm using post_reply.asp and the querystring that was passed to it.