I am sure most of the guys here knows about xsssqli
Similar to this is it possible to inject xss code through an sql injection?
While thinking about this it has raised some questions in my mind
1)say a web site is vulnerable to sql injection,
is it possible to inject xss code in to the sql vulnerable part and make it vulnerable to xss ?
2)Also can we Introduce All the threee types of xss like persistent,non-persistent and DOM based with this ?
3)In general Assume if a web-application is vulnerable to sqli and xss means ,what are the other possible attacks
we can introduce with those vulnerabilities (like CSRF etc)?
4)And if you like please say a few words about xss as a SERVER SIDE THREAT ,so that i can understand about it as a server side threat,because some of the ppl around me just thinks it as a client side vulnerability that can just damage to client side..
Bear with me