Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Microsoft SQL Server 2008 SP3 and SP4, 2008 R2 SP2 and SP3, 2012 SP1 and SP2, and 2014, when transactional replication is configured, does not prevent use of uninitialized memory in unspecified function calls, which allows remote authenticated users to execute arbitrary code by leveraging certain permissions and making a crafted query, as demonstrated by the VIEW SERVER STATE permission, aka "SQL Server Remote Code Execution Vulnerability."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft SQL Server 远程执行代码漏洞
Vulnerability Description
Microsoft SQL Server是美国微软(Microsoft)公司开发和维护的一套应用在Microsoft Windows系统下的大型商业数据库系统。 Microsoft SQL Server不正确地处理对未初始化内容的内部函数调用时,存在远程代码执行漏洞。攻击者可通过在启用特殊权限设置(如 VIEW SERVER STATE)的受影响的SQL Server上运行特制的查询,利用此漏洞完全控制受影响的系统。以下版本受到影响:Microsoft SQL Server 2008 SP3 和SP4,
CVSS Information
N/A
Vulnerability Type
N/A