Improper input validation
Appearance
An editor has nominated this article for deletion. You are welcome to participate in the deletion discussion, which will decide whether or not to retain it. |
![]() | The topic of this article may not meet Wikipedia's general notability guideline. (March 2008) |
String exploits are security exploits involving handling of string data in computer software.
- Format string attack - unchecked
*printf
format strings are dangerous - Buffer overflow - Buffer overflows often occurs in unsafe string functions
- Cross-site scripting - unsafe output of input strings
- Directory traversal - concatenating strings to create a filename is not a good idea
- SQL injection - concatenating strings to create a SQL statement is not a good idea