Filtered by vendor Microsoft Subscriptions
Filtered by product Sql Server Subscriptions
Total 120 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2002-1145 1 Microsoft 2 Data Engine, Sql Server 2025-04-03 N/A
The xp_runwebtask stored procedure in the Web Tasks component of Microsoft SQL Server 7.0 and 2000, Microsoft Data Engine (MSDE) 1.0, and Microsoft Desktop Engine (MSDE) 2000 can be executed by PUBLIC, which allows an attacker to gain privileges by updating a webtask that is owned by the database owner through the msdb.dbo.mswebtasks table, which does not have strong permissions.
CVE-2023-21718 1 Microsoft 1 Sql Server 2025-02-28 7.8 High
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-29356 1 Microsoft 2 Odbc Driver For Sql Server, Sql Server 2025-02-28 7.8 High
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-32025 1 Microsoft 2 Odbc Driver For Sql Server, Sql Server 2025-02-28 7.8 High
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-32026 1 Microsoft 2 Odbc Driver For Sql Server, Sql Server 2025-02-28 7.8 High
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-32027 1 Microsoft 2 Odbc Driver For Sql Server, Sql Server 2025-02-28 7.8 High
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-29349 1 Microsoft 3 Odbc Driver For Sql Server, Ole Db Driver For Sql Server, Sql Server 2025-02-28 7.8 High
Microsoft ODBC and OLE DB Remote Code Execution Vulnerability
CVE-2023-38169 1 Microsoft 3 Odbc Driver For Sql Server, Ole Db Driver For Sql Server, Sql Server 2025-02-27 8.8 High
Microsoft SQL OLE DB Remote Code Execution Vulnerability
CVE-2023-23384 1 Microsoft 1 Sql Server 2025-01-23 7.3 High
Microsoft SQL Server Remote Code Execution Vulnerability
CVE-2022-29143 1 Microsoft 1 Sql Server 2025-01-02 7.5 High
Microsoft SQL Server Remote Code Execution Vulnerability
CVE-2022-23276 2 Linux, Microsoft 2 Linux Kernel, Sql Server 2025-01-02 7.8 High
SQL Server for Linux Containers Elevation of Privilege Vulnerability
CVE-2023-32028 1 Microsoft 2 Ole Db Driver For Sql Server, Sql Server 2025-01-01 7.8 High
Microsoft SQL OLE DB Remote Code Execution Vulnerability
CVE-2023-21713 1 Microsoft 1 Sql Server 2025-01-01 8.8 High
Microsoft SQL Server Remote Code Execution Vulnerability
CVE-2023-21528 1 Microsoft 1 Sql Server 2025-01-01 7.8 High
Microsoft SQL Server Remote Code Execution Vulnerability
CVE-2023-21705 1 Microsoft 1 Sql Server 2025-01-01 8.8 High
Microsoft SQL Server Remote Code Execution Vulnerability
CVE-2023-21704 1 Microsoft 1 Sql Server 2025-01-01 7.8 High
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2021-1636 1 Microsoft 1 Sql Server 2024-11-21 8.8 High
Microsoft SQL Elevation of Privilege Vulnerability
CVE-2019-1068 1 Microsoft 1 Sql Server 2024-11-21 N/A
A remote code execution vulnerability exists in Microsoft SQL Server when it incorrectly handles processing of internal functions, aka 'Microsoft SQL Server Remote Code Execution Vulnerability'.
CVE-2019-0819 1 Microsoft 1 Sql Server 2024-11-21 N/A
An information disclosure vulnerability exists in Microsoft SQL Server Analysis Services when it improperly enforces metadata permissions, aka 'Microsoft SQL Server Analysis Services Information Disclosure Vulnerability'.
CVE-2018-8273 1 Microsoft 1 Sql Server 2024-11-21 9.8 Critical
A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL Server Remote Code Execution Vulnerability." This affects Microsoft SQL Server.