PT-2008-1761 · Microsoft · Sql Server 2005 Sp2+4

Publicado

2008-07-08

·

Atualizado

2018-10-15

·

CVE-2008-0106

CVSS v2.0

9.0

Alta

VetorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft SQL Server 2005 SP1 Microsoft SQL Server 2005 SP2 Microsoft SQL Server 2005 Express Edition SP1 Microsoft SQL Server 2005 Express Edition SP2
Description A buffer overflow issue exists, allowing remote authenticated users to execute arbitrary code via a crafted insert statement. This could enable an authenticated attacker to gain elevation of privilege, potentially running code and taking complete control of the system.
Recommendations For Microsoft SQL Server 2005 SP1, update to a version that includes the fix for this issue. For Microsoft SQL Server 2005 SP2, update to a version that includes the fix for this issue. For Microsoft SQL Server 2005 Express Edition SP1, update to a version that includes the fix for this issue. For Microsoft SQL Server 2005 Express Edition SP2, update to a version that includes the fix for this issue.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0106

Produtos afetados

Sql Server 2005 Express Edition Sp1
Sql Server 2005 Express Edition Sp2
Sql Server 2005 Sp1
Sql Server 2005 Sp2
Sql Server