Did someone have a Bobby Tables moment?
In Oracle, you can't use a bind variable in setting a password on an account, so SQL injection is a more significant risk. I wrote some JavaScript and pl/sql to address that.
In Oracle, you can't use a bind variable in setting a password on an account, so SQL injection is a more significant risk. I wrote some JavaScript and pl/sql to address that.
The JavaScript posts excessive status messages, and only allows a submit when all checks have passed.
As it stands now, no human can write to a DB in prod-- only service accounts.