Protect Your Database From Your Webapp
Date : 07 24 2008 Category : Web
I've been seeing this SQL Server code running wild for the past few days: DECLARE @T varchar(255), @C varchar(255); DECLARE Table_Cursor CURSOR FOR SELECT a.name, b.name FROM sysobjects a, syscolumns b WHERE a.id = b.id AND a.xtype = 'u' AND...