Exploiting Web vulns in Thick Client

  • tier three prevents the end-user from directly communicating with the db.
  • but brings in web-specific attacks like SQLi and Path traversal