...author is not a database professional and is giving no thought to the security of the website as a whole, nor the databasebehind it. Special characters are an easy way for hackers to take over a database. Add a wildcard character, put in...
http://news.cnet.com/8301-31114_3-10407961-258.html