Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

P0W1

#24910de 53,632
9.8CVSS total
Vulnerabilidades · 1
PT-2019-11586
9.8
2019-05-31
Microsoft · Mssql · CVE-2019-10123
Name of the Vulnerable Software and Affected Versions: Advanced InfoData Systems (AIS) ESEL-Server version 67 Description: The issue allows an anonymous attacker to execute arbitrary code in the context of the user of the MSSQL database. The default user for the database is the `sa` user. Recommendations: For Advanced InfoData Systems (AIS) ESEL-Server version 67, consider restricting access to the MSSQL database to minimize the risk of exploitation. As a temporary workaround, limit the privileges of the `sa` user until a patch is available.