Protegrity · Protegrity Secure.Data Extension Feature · CVE-2003-0030
**Name of the Vulnerable Software and Affected Versions**
Protegrity Secure.Data Extension Feature (SEF) versions prior to 2.2.3.9
**Description**
The issue concerns buffer overflows in the protegrity.dll component, allowing attackers with SQL access to execute arbitrary code. This can be achieved through the extended stored procedures `xp pty checkusers`, `xp pty insert`, or `xp pty select`.
**Recommendations**
For versions prior to 2.2.3.9, update to version 2.2.3.9 or later to resolve the issue. As a temporary workaround, consider restricting access to the extended stored procedures `xp pty checkusers`, `xp pty insert`, and `xp pty select` to minimize the risk of exploitation.