cbcvebase.

Microsoft SQL Server vulnerabilities

108 known vulnerabilities affecting microsoft/sql_server.

Total CVEs
108
CISA KEV
2
actively exploited
Public exploits
23
Exploited in wild
7
Severity breakdown
CRITICAL18HIGH57MEDIUM30LOW3

Vulnerabilities

Page 1 of 6
CVE-2020-0618P1HIGHCVSS 8.8KEVPoCRansomwarev2012v2014+1 more2020-02-11
CVE-2020-0618 [HIGH] CWE-502 CVE-2020-0618: A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it inco A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.
nvd
CVE-2012-1856P1HIGHCVSS 8.8KEVv2000v2005+1 more2012-08-15
CVE-2012-1856 [HIGH] CVE-2012-1856: The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office 2003 SP3, Of The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office 2003 SP3, Office 2003 Web Components SP3, Office 2007 SP2 and SP3, Office 2010 SP1, SQL Server 2000 SP4, SQL Server 2005 SP4, SQL Server 2008 SP2, SP3, R2, R2 SP1, and R2 SP2, Commerce Server 2002 SP4, Commerce Server 2007 SP2, Commerce Server 2009 Gold and R2, Host Integrat
nvd
CVE-2019-1068P1HIGHCVSS 8.8ExploitedPoCRansomwarev2014v2016+1 more2019-07-15
CVE-2019-1068 [HIGH] CVE-2019-1068: A remote code execution vulnerability exists in Microsoft SQL Server when it incorrectly handles pro A remote code execution vulnerability exists in Microsoft SQL Server when it incorrectly handles processing of internal functions, aka 'Microsoft SQL Server Remote Code Execution Vulnerability'.
nvd
CVE-2002-0649P2HIGHCVSS 7.5ExploitedPoCv20002002-08-12
CVE-2002-0649 [HIGH] CWE-119 CVE-2002-0649: Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desk Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSDE) allow remote attackers to cause a denial of service or execute arbitrary code via UDP packets to port 1434 in which (1) a 0x04 byte that causes the SQL Monitor thread to generate a long registry key name, or (2) a 0x08 byte with a l
nvd
CVE-2009-3126P2CRITICALCVSS 9.3Exploitedv20052009-10-14
CVE-2009-3126 [CRITICAL] CWE-189 CVE-2009-3126: Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3 Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 Gold and SP3, Office Excel Viewer 2003 Gold and SP3, Office Excel Viewer, Office PowerPoint Viewer 2007 Gold, SP
nvd
CVE-2021-1636P2HIGHCVSS 8.8Exploitedv2012v2014+3 more2021-01-12
CVE-2021-1636 [HIGH] CWE-89 CVE-2021-1636: Microsoft SQL Elevation of Privilege Vulnerability Microsoft SQL Elevation of Privilege Vulnerability
nvd
CVE-2009-2501P2CRITICALCVSS 9.3Exploitedv20052009-10-14
CVE-2009-2501 [CRITICAL] CWE-119 CVE-2009-2501: Heap-based buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Off Heap-based buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 Gold and SP3, Office Excel Viewer 2003 Gold and SP3, Office Excel Viewer, Office PowerPoint Viewer 200
nvd
CVE-2008-5416P2CRITICALCVSS 9.0PoCv2000v20052008-12-10
CVE-2008-5416 [CRITICAL] CWE-119 CVE-2008-5416: Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and earlier; SQL Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and earlier; SQL Server 2000 Desktop Engine (MSDE 2000) SP4; SQL Server 2005 SP2 and 9.00.1399.06; SQL Server 2000 Desktop Engine (WMSDE) on Windows Server 2003 SP1 and SP2; and Windows Internal Database (WYukon) SP2 allows remote authenticated users to cause a denial
nvd
CVE-2008-3013P2CRITICALCVSS 9.3PoCv20052008-09-11
CVE-2008-3013 [CRITICAL] CWE-399 CVE-2008-3013: gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 an gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint Viewer 2003, Works 8, Digital Image Suite 2006, SQL Server 2000 Reporting Services SP2, SQL Server 20
nvd
CVE-2007-5348P2CRITICALCVSS 9.3PoCv20052008-09-11
CVE-2007-5348 [CRITICAL] CWE-189 CVE-2007-5348: Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 S Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint Viewer 2003, Works 8, Digital Image Suite 2006, SQL Server 2000 Reporting Services SP2, SQL Serv
nvd
CVE-2002-1123P2HIGHCVSS 7.5PoCv20002002-09-24
CVE-2002-1123 [HIGH] CVE-2002-1123: Buffer overflow in the authentication function for Microsoft SQL Server 2000 and Microsoft Desktop E Buffer overflow in the authentication function for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows remote attackers to execute arbitrary code via a long request to TCP port 1433, aka the "Hello" overflow.
nvd
CVE-2007-4814P3HIGHCVSS 7.5PoCv20052007-09-11
CVE-2007-4814 [HIGH] CWE-119 CVE-2007-4814: Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqld Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqldmo.dll) 2000.085.2004.00 in Microsoft SQL Server Enterprise Manager 8.05.2004 allows remote attackers to execute arbitrary code via a long second argument to the Start method.
nvd
CVE-2002-0721P3CRITICALCVSS 10.0PoCv7.0v20002002-09-05
CVE-2002-0721 [CRITICAL] CVE-2002-0721: Microsoft SQL Server 7.0 and 2000 installs with weak permissions for extended stored procedures that Microsoft SQL Server 7.0 and 2000 installs with weak permissions for extended stored procedures that are associated with helper functions, which could allow unprivileged users, and possibly remote attackers, to run stored procedures with administrator privileges via (1) xp_execresultset, (2) xp_printstatements, or (3) xp_displayparamstmt.
nvd
CVE-2002-0186P3HIGHCVSS 7.5PoCv20002002-07-03
CVE-2002-0186 [HIGH] CVE-2002-0186: Buffer overflow in the SQLXML ISAPI extension of Microsoft SQL Server 2000 allows remote attackers t Buffer overflow in the SQLXML ISAPI extension of Microsoft SQL Server 2000 allows remote attackers to execute arbitrary code via data queries with a long content-type parameter, aka "Unchecked Buffer in SQLXML ISAPI Extension."
nvd
CVE-2018-8273P2CRITICALCVSS 9.8v2016-sp1v2016-sp2+1 more2018-08-15
CVE-2018-8273 [CRITICAL] CWE-787 CVE-2018-8273: A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code exec A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL Server Remote Code Execution Vulnerability." This affects Microsoft SQL Server.
nvd
CVE-2002-0624P3HIGHCVSS 7.5PoCv20002002-07-23
CVE-2002-0624 [HIGH] CVE-2002-0624: Buffer overflow in the password encryption function of Microsoft SQL Server 2000, including Microsof Buffer overflow in the password encryption function of Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, allows remote attackers to gain control of the database and execute arbitrary code via SQL Server Authentication, aka "Unchecked Buffer in Password Encryption Procedure."
nvd
CVE-2008-0086P2CRITICALCVSS 9.0v7.0v2000+1 more2008-07-08
CVE-2008-0086 [CRITICAL] CWE-119 CVE-2008-0086: Buffer overflow in the convert function in Microsoft SQL Server 2000 SP4, 2000 Desktop Engine (MSDE Buffer overflow in the convert function in Microsoft SQL Server 2000 SP4, 2000 Desktop Engine (MSDE 2000) SP4, and 2000 Desktop Engine (WMSDE) allows remote authenticated users to execute arbitrary code via a crafted SQL expression.
nvd
CVE-2002-0859P3HIGHCVSS 7.5PoCv20002002-09-05
CVE-2002-0859 [HIGH] CVE-2002-0859: Buffer overflow in the OpenDataSource function of the Jet engine on Microsoft SQL Server 2000 allows Buffer overflow in the OpenDataSource function of the Jet engine on Microsoft SQL Server 2000 allows remote attackers to execute arbitrary code.
nvd
CVE-2008-3014P2CRITICALCVSS 9.3v20052008-09-11
CVE-2008-3014 [CRITICAL] CWE-119 CVE-2008-3014: Buffer overflow in gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Buffer overflow in gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint Viewer 2003, Works 8, Digital Image Suite 2006, SQL Server 2000 Reporting Services
nvd
CVE-2000-0402P4LOWCVSS 2.1PoCv7.02000-05-30
CVE-2000-0402 [LOW] CVE-2000-0402: The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in plaintext in a log file which is readable by any user, aka the "SQL Server 7.0 Service Pack Password" vulnerability.
nvd
Microsoft SQL Server vulnerabilities | cvebase