VERIFIED SOLUTION i
X

How to find SQL statement in error messages of Sagent.

UPDATED: April 21, 2017


Sagent displays complete SQL statement with  table and column names in error messages thrown by the application.

User-added image
 
Potential Implications 
Revealing information such as SQL statements with details such as table and column names allow an individual with a malicious intent to craft and use specific SQL query for future attacks on the database of the application. 


 

Environment Details

Product Feature: Design Studio

 

Downloads

  • No Downloads