Can I read ODBC Error Exploitation in ASP Security on EtoBox?
ODBC Error Exploitation in ASP Security by Fernando Muñoz is a document available to read on EtoBox.
What is ODBC Error Exploitation in ASP Security about?
The document describes how to disassemble a web application that connects to a SQL database in order to bypass login pages and retrieve or modify data. It demonstrates how an attacker can leverage error messages from improperly sanitized SQL queries in ASP pages to enumerate the database structure, including table names and column names. The attacker can then insert new records to create unauthorized accounts or update existing records to modify data without authentication.
- Author
- Fernando Muñoz
- Language
- EN