PT-2022-1665 · Microsoft · Sql Server

Alon Zahavi

+1

·

Published

2022-02-08

·

Updated

2023-08-08

·

CVE-2022-23276

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SQL Server for Linux Containers (affected versions not specified)
Description The issue is related to insecure privilege management in Microsoft SQL Server for Linux. Exploitation of this issue may allow an attacker to elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

BDU:2022-00915
CVE-2022-23276

Affected Products

Sql Server