MS/SQL Plugs Security Hole
Late last night, Microsoft posted a Security Bulletin exposing a security risk that affects Microsoft SQL Server 7 and 2000. This security hole could allow a malicious user to commandeer a terminated, but cached, administrator connection. This would enable the hacker not only to execute queries in privileged mode, but could ultimately grant control of the server itself. Microsoft has posted a patch that eliminates this problem. With lab help from KeyLabs, BugNet was able to test the patch on both Windows NT 4 and Windows 2000.? (more...)
August 2nd, 2009





Home