SQL Server take ownership - TechRepublic
Question
April 25, 2007 at 06:20 AM
werewolf_

SQL Server take ownership

by werewolf_ . Updated 19 years, 2 months ago

Hi

This week, an external consultant ran a script on our SQL Server with a owner right on one database and no SA rights. The SA password was kind of impossible to break, something like ‘9dkchal$1SDxka12356k*a!h’. But with only rights on his DB and a script, he take ownership of the entire server (change the SA password)… How can a script do that? I mean, without windows rights and being limited to his db … I’m confused about this. This is related to SQL Server 2000 SP4 and SQL Server 2005 SP2. Thank you for your ideas…

This discussion is locked

All Comments