7.2
CVE-1999-1556
- EPSS 1.72%
- Veröffentlicht 29.06.1998 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:50:42
- Erkennungen
Microsoft SQL Server 6.5 uses weak encryption for the password for the SQLExecutiveCmdExec account and stores it in an accessible portion of the registry, which could allow local users to gain privileges by reading and decrypting the CmdExecAccount value.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Sql Server Version 6.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.72% | 0.753 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
http://marc.info/?l=ntbugtraq&m=90222453431645&w=2
http://www.securityfocus.com/bid/109
https://exchange.xforce.ibmcloud.com/vulnerabilities/7354