All Tags > Sql injection filter (RSS)
  • URLScan 3.0 RTW: [AlwaysAllowedQueryStrings]

    Doing some testing, currently, and running into some issues with this. We've got a couple cases where things like 'cast' or 'open' are appropriate for our webpages. I've setup an AlwaysAllowedQueryStrings section: [AlwaysAllowedQueryStrings] branch=Openshaw branch=Newcastle+upon...
    Posted to Forum by jgraham on 09-02-2008, 9:46 AM
  • Re: urlScan 3.0 rtw [AlwaysAllowedUrls] not working? Wildcard/regex in [AlwaysAllowedQueryStrings]

    Hi Zhao, Thank you for your reply. I now understand how [AlwaysAllowedUrls] works and where the query string check is still performed on the allowed Urls. To clarify, here is what I would like to achieve. For instance, I would like the following 'url+query string' to be valid: http://www.domain...
    Posted to Forum by ytkaczyk on 08-28-2008, 11:46 AM
  • Re: Anyone know about www.nihaorr1.com/1.js?

    Hi, A Sys Admin account in MS SQL give you access to all databases and gives you all privileges. So basically you don't need any other rights. I'm not sure if a Windows Admin account has admin right in MS SQL. I believe you need to add the Windows Account to MS SQL and grant that account proper...
    Posted to Forum by greenlit_design on 05-13-2008, 11:09 AM
  • Re: Anyone know about www.nihaorr1.com/1.js?

    [quote user="bjornen"] Thanks a lot alexhiggins732 I added this script to the website and it seems to work very well already. Only few hours after I set it up, he tried again. This time he was not able to destroy any data in the database. I got the email with the below information. Is there...
    Posted to Forum by alexhiggins732 on 05-08-2008, 2:26 AM
Page 1 of 1 (4 items)
Microsoft Communities