expose critical customer info

From: c c (
Date: 01/10/02

Date: Thu, 10 Jan 2002 08:06:18 -0800 (PST)
From: c c <>

Hi all.
The Microsoft Site: , a source for
ordering free developer product betas, evaluation
kits, and other development resources from Microsoft.
For students and faculty, the Academic Developer Store
is the source for all Microsoft developer products at
discounted Academic prices.
This site allow to anybody to view critical customer
information, this happen because it's doesn't check
user inputs, allowing sql inyection like :|')%20union%20all%20select%201,name%20from%20sysobjects%20where%20type='U'--

this is one of many huge holes, i'm not going to
enumerate every one, i don't work for microsoft :). I
just want to tell everyone this very strange situation

I don't know when they gonna fix it, so don't put your
personal info there until they fix it and i you alredy
do it humm... it's your problem :).

Hey, Microsoft people, why don't you test your
webapps? you can use WebSleuth
it's free, you have to expend only time!!!.

Microsoft was contacted.

Cesar Cerrudo.
Parana, Entre Rios.

Do You Yahoo!?
Send FREE video emails in Yahoo! Mail!

Relevant Pages

  • Re: DELPHI 2005
    ... Has there been a Delphi that didn't need a service pack? ... Microsoft is a god to some developers, ... developer product that hasn't needed a service pack? ...
  • =?UTF-8?B?UmU6IEjDtG0gbmF5IGPDsyBnw6wgbOG6oSA/?=
    ... May 2007 saying that Microsoft had approached Yahoo about a friendly ... compelling value realization event for your shareholders. ... While online advertising growth continues, ...
  • Re: Microsoft offers $44.6B for Yahoo
    ... Yahoo, offering Yahoo shareholders cash or stock. ... MS needs to compete against Google ... MS to expand in areas of video, mobile services, online commerce, and ... Microsoft Makes Grab for Yahoo ...
  • Do U want me ?, Got money !
    ... AOL May Become Object Of Microsoft, Yahoo, Google's Desires ... The future of Time Warner Inc's embattled online unit AOL now ... Meanwhile, Microsoft, if it continues to refuse to deal with Yahoo's ...
  • Finally, Microsoft, Yahoo Messenger Customers Can Chat
    ... instant messaging programs to trade messages with one another. ... which include AOL's pioneering AIM service, Microsoft and Yahoo, along ... AOL agreed in December to make its U.S.-market-leading AIM eventually ...