[26854] in bugtraq
Manipulating Microsoft SQL Server Using SQL Injection
daemon@ATHENA.MIT.EDU (Aaron C. Newman)
Wed Aug 28 16:32:12 2002
From: "Aaron C. Newman" <aaron@newman-family.com>
To: <bugtraq@securityfocus.com>, <pen-test@securityfocus.com>,
<vuln-dev@securityfocus.com>, <security-basics@securityfocus.com>,
<webappsec@securityfocus.com>
Date: Wed, 28 Aug 2002 12:38:02 -0400
MIME-Version: 1.0
Content-Type: text/plain;
charset="US-ASCII"
Content-Transfer-Encoding: 7bit
Message-Id: <20020828150632.840FA73FAC@sparky.appsecinc.com>
Hi All,
I just posted a short white paper on Microsoft SQL Server and SQL
Injection titled "Manipulating Microsoft SQL Server Using SQL Injection"
at:
http://www.appsecinc.com/news/briefing.html#inject14
The paper was written and researched by Cesar Cerrudo
(sqlsec@yahoo.com).
All comments are welcome.
Regards,
Aaron
_______________________________
Aaron C. Newman
anewman@appsecinc.com
CTO/Founder
Application Security, Inc.
www.appsecinc.com
Phone: 212-490-6022
Fax: 212-490-6456
- Protection Where It Counts -