HIGH✓ PATCH🇬🇧 English

CVE-2023-36417

CVSS 7.8v3.1pub. 2023-10-10upd. 2024-11-21

Microsoft SQL OLE DB Remote Code Execution Vulnerability

oryginał EN
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
  • Microsoft Ole Db Driver For Sql Server

    APP
    Microsoft
    18.0.0 – 18.6.0007.0 (bez)19.0.0 – 19.3.0002.0 (bez)
  • Microsoft SQL Server

    APP
    Microsoft
    20192022
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
RCE
CWE
Referencje

Powiązane podatności

CVE-2018-8273CRITICAL9.8PL ✓ten sam produkt

Buffer overflow umożliwiający RCE w Microsoft SQL Server

CVE-2020-0618HIGH8.8⚠ KEVten sam produkt

A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly ha...

CVE-2019-1068HIGH8.8⚠ KEVten sam produkt

A remote code execution vulnerability exists in Microsoft SQL Server when it incorrectly handles processing of...

CVE-2012-1856HIGH8.8⚠ KEVten sam produkt

The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office 2003 SP3, Office 2003 ...

CVE-2024-37334HIGH8.8ten sam produkt

Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability