Re: FW: Microsoft Security Advisory MS 03-007

From: noconflic (nocon@texas-shooters.com)
Date: 03/18/03

  • Next message: busu: "RE: write permissions for IIS"
    Date: Tue, 18 Mar 2003 15:37:33 -0600
    From: noconflic <nocon@texas-shooters.com>
    To: "Nero, Nick" <Nick.Nero@disney.com>
    
    

    > From: Nero, Nick
    > Sent: Tuesday, March 18, 2003 1:29 PM
    > To: 'Jonathan Grotegut'; Matthew Cole; Douglas R. Wilson; Focus-MS
    >
    >
    > I read at the XForce site, I believe, that Win2k3 RC2 (IIS6) is fine. I
    > am trying to find a vulnerability tester/script and I could test it out
    > myself. Anybody seen one?
    >
    >
    >

       This was posted to another list.

    http://cvs.nessus.org/cgi-bin/cvsweb.cgi/~checkout~/nessus-plugins/scripts/iis_webdav_overflow.nasl

    Hope this helps
     -CH

    ----------------------------------------------------------------------
    ALERT: How a Hacker Uses SQL Injection to Steal Your SQL Data!
    It's as simple as placing additional SQL commands into a Web Form input
    box giving hackers complete access to all your backend systems!
    http://www.spidynamics.com/mktg/sqlinjection33


  • Next message: busu: "RE: write permissions for IIS"

    Relevant Pages

    • RE: Microsoft Security Advisory MS 03-007 - Problems
      ... recommending that the patch be installed. ... would have a problem installing this patch, ... How a Hacker Uses SQL Injection to Steal Your SQL Data! ... box giving hackers complete access to all your backend systems! ...
      (Focus-Microsoft)
    • RE: Microsoft Security Advisory MS 03-007 - Problems
      ... I had one person report problems installing the patch on a server running ... How a Hacker Uses SQL Injection to Steal Your SQL Data! ... box giving hackers complete access to all your backend systems! ... It's as simple as placing additional SQL commands into a Web Form input ...
      (Focus-Microsoft)
    • RE: Expire accounts from Active Directory after a period of inactivity
      ... One thing to be conscious of- in Windows 2000, ... you could not simply query AD for this information- you would ... How a Hacker Uses SQL Injection to Steal Your SQL ... > box giving hackers complete access to all your backend systems! ...
      (Focus-Microsoft)
    • RE: Microsoft Security Advisory MS 03-007 - Problems
      ... How a Hacker Uses SQL Injection to Steal Your SQL Data! ... > simple as placing additional SQL commands into a Web Form input ... > box giving hackers complete access to all your backend systems! ...
      (Focus-Microsoft)
    • RE: Microsoft Security Advisory MS 03-007 - Problems
      ... Microsoft Security Advisory MS 03-007 - Problems ... How a Hacker Uses SQL Injection to Steal Your SQL Data! ... box giving hackers complete access to all your backend systems! ...
      (Focus-Microsoft)