Home
%3CLINGO-SUB%20id%3D%22lingo-sub-383195%22%20slang%3D%22en-US%22%3ELet's%20talk%20about%20Dynamic%20SQL%20(preamble)%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-383195%22%20slang%3D%22en-US%22%3E%0A%20%26lt%3Bmeta%20http-equiv%3D%22Content-Type%22%20content%3D%22text%2Fhtml%3B%20charset%3DUTF-8%22%20%2F%26gt%3B%3CSTRONG%3E%20First%20published%20on%20MSDN%20on%20Jan%2004%2C%202007%20%3C%2FSTRONG%3E%20%3CBR%20%2F%3E%20%3CBR%20%2F%3E%3CP%3EI%20want%20to%20talk%20about%20how%20dynamic%20SQL%20is%20affected%20by%20the%20execution%20context%2C%20but%20as%20this%20is%20a%20huge%20and%20broad%20topic%20I%20am%20going%20to%20divide%20this%20topic%20into%20multiple%20parts%20and%20write%20different%20posts%20for%20each%20one%20of%20them%2C%20focusing%20in%20one%20aspect%20of%20dynamic%20SQL%20at%20a%20time.%3C%2FP%3E%3CBR%20%2F%3E%3CUL%3E%3CBR%20%2F%3E%3CLI%3EDynamic%20SQL%20%26amp%3B%20SQL%20injection.%3C%2FLI%3E%3CBR%20%2F%3E%3CLI%3EDynamic%20SQL%20%26amp%3B%20EXECUTE%20AS%3C%2FLI%3E%3CBR%20%2F%3E%3CLI%3EDynamic%20SQL%20%26amp%3B%20module%20signatures%3C%2FLI%3E%0A%20%20%3C%2FUL%3E%3CBR%20%2F%3E%3CP%3E%3CB%3E%20%3C%2FB%3E%20I%20hope%20you%20will%20find%20the%20subsequent%20posts%20useful.%3C%2FP%3E%0A%20%0A%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-383195%22%20slang%3D%22en-US%22%3EFirst%20published%20on%20MSDN%20on%20Jan%2004%2C%202007%20%26nbsp%3B%20I%20want%20to%20talk%20about%20how%20dynamic%20SQL%20is%20affected%20by%20the%20execution%20context%2C%20but%20as%20this%20is%20a%20huge%20and%20broad%20topic%20I%20am%20going%20to%20divide%20this%20topic%20into%20multiple%20parts%20and%20write%20different%20posts%20for%20each%20one%20of%20them%2C%20focusing%20in%20one%20aspect%20of%20dynamic%20SQL%20at%20a%20time.%3C%2FLINGO-TEASER%3E%3CLINGO-LABS%20id%3D%22lingo-labs-383195%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3ESQLServerSecurity%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Microsoft
First published on MSDN on Jan 04, 2007

I want to talk about how dynamic SQL is affected by the execution context, but as this is a huge and broad topic I am going to divide this topic into multiple parts and write different posts for each one of them, focusing in one aspect of dynamic SQL at a time.



  • Dynamic SQL & SQL injection.

  • Dynamic SQL & EXECUTE AS

  • Dynamic SQL & module signatures

I hope you will find the subsequent posts useful.