|
|
|
|
|
by nikcub
5161 days ago
|
|
because to exploit it your injection only needs to alter one part of the statement, as opposed to altering one part of the statement plus the table being altered on. SQL injection or other auth type vulnerabilities that allow you to alter field values are a lot more common than those that allow you to run a general statement to alter another table |
|