Penetration Testing mailing list archives

MS-SQL Insertion (fwd)


From: Haroon Meer <haroon () sensepost com>
Date: Fri, 11 Jan 2002 15:46:03 +0200 (SAST)


Hi..

There has been a fair bit of talk recently on MS-SQL insertion wrt. to web
forms and poor input validation. We wrote a paper a little while back on
this, and decided to release it in its original form.. A more readable
version is currently being written (because apparantly my writing style
sucks :/ )


======================================================================
Haroon Meer                             SensePost Information Security
+27 837866637                                     haroon () sensepost com
======================================================================

Attachment: mh-sql.txt
Description:

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/

Current thread: