(domain\machine $) ( , , , - lact haxor), -.
, ( " " ).
- SQL-.
, db.
An additional risk of having db_owner is DROP TABLE, even DROP DATABASE attacks. Without db_owner, this is still dangerous, for example, "SELECT * FROM usertable WHERE 1 = 1".
Unfortunately, you have no choice with commercial or third-party applications for using stored procedures, least resolution, etc.
You may be able to reduce privileges after installation.
source
share