6.8

CVE-2014-4061

Microsoft SQL Server 2008 SP3, 2008 R2 SP2, and 2012 SP1 does not properly control use of stack memory for processing of T-SQL batch commands, which allows remote authenticated users to cause a denial of service (daemon hang) via a crafted T-SQL statement, aka "Microsoft SQL Server Stack Overrun Vulnerability."

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftSql Server Version2008 Updater2_sp2 Editionitanium
MicrosoftSql Server Version2008 Updater2_sp2 Editionx64
MicrosoftSql Server Version2008 Updater2_sp2 Editionx86
MicrosoftSql Server Version2008 Updatesp3 Editionitanium
MicrosoftSql Server Version2008 Updatesp3 Editionx64
MicrosoftSql Server Version2008 Updatesp3 Editionx86
MicrosoftSql Server Version2012 Updatesp1 Editionx64
MicrosoftSql Server Version2012 Updatesp1 Editionx86
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 33.91% 0.968
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8 6.9
AV:N/AC:L/Au:S/C:N/I:N/A:C