RE: Exchange Error -- Event 9543

  • From: "Cresswell, Charles" <charlesc@xxxxxxxxxxxxxxxx>
  • To: "[ExchangeList]" <exchangelist@xxxxxxxxxxxxx>
  • Date: Sat, 5 Jul 2003 09:46:36 +0100

thats an interesting site mark.
 
as an aside, it seems to be very easy to generate SQL errors with various
malformed values of eventid. They havent trapped simple overflows
(http://www.eventid.net/display.asp?eventid=11111111111111111111111111111111
11
<http://www.eventid.net/display.asp?eventid=11111111111111111111111111111111
11> ) before it hits the SQL db which is quite poor, so they have probably
not done much to prevent SQL Injection either!
 
Maybe not a good site to actually sign up to with your credit card then
unless you want some l33t h4x0r obtaining your details :)
 
Charles Cresswell, IS Manager
020 72130728
 

 

The Association of Corporate Treasurers 
Ocean House
10/12 Little Trinity Lane 
London EC4V 2DJ 

tel: +44.(0)20 7213 9728 
fax: +44.(0)20 7248 2591 
www: http://www.treasurers.org 

Notice of Confidentiality 
This e-mail (and any attachments) is intended for the named addressee(s)
only. It contains information that may be confidential. Unless you are the
named addressee (or authorised to receive it for the addressee) you may not
read, copy, use, or disclose it to anyone else. Unauthorised use, copying or
disclosure is strictly prohibited and may be unlawful. If you have received
this transmission in error, please notify the sender by telephone
immediately 020 7213 0705 and delete the message from your e-mail system.

The Association of Corporate Treasurers may monitor outgoing and incoming
e-mails and other telecommunications on its e-mail and telecommunications
systems. By replying to this e-mail you give your consent to such
monitoring.
#ACT#
The Association of Corporate Treasurers 
Ocean House
10/12 Little Trinity Lane 
London EC4V 2DJ 

tel: +44.(0)20 7213 9728 
fax: +44.(0)20 7248 2591 
www: http://www.treasurers.org 

Notice of Confidentiality 
This e-mail (and any attachments) is intended for the named addressee(s)
only. It contains information that may be confidential. Unless you are the
named addressee (or authorised to receive it for the addressee) you may not
read, copy, use, or disclose it to anyone else. Unauthorised use, copying or
disclosure is strictly prohibited and may be unlawful. If you have received
this transmission in error, please notify the sender by telephone
immediately 020 7213 0705 and delete the message from your e-mail system.

The Association of Corporate Treasurers may monitor outgoing and incoming
e-mails and other telecommunications on its e-mail and telecommunications
systems. By replying to this e-mail you give your consent to such
monitoring.
#ACT#



Other related posts: