6.8
CVE-2014-4061
- EPSS 33.91%
- Published 12.08.2014 21:55:07
- Last modified 12.04.2025 10:46:40
- Source secure@microsoft.com
- Teams watchlist Login
- Open Login
Microsoft SQL Server 2008 SP3, 2008 R2 SP2, and 2012 SP1 does not properly control use of stack memory for processing of T-SQL batch commands, which allows remote authenticated users to cause a denial of service (daemon hang) via a crafted T-SQL statement, aka "Microsoft SQL Server Stack Overrun Vulnerability."
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Sql Server Version2008 Updater2_sp2 Editionitanium
Microsoft ≫ Sql Server Version2008 Updater2_sp2 Editionx64
Microsoft ≫ Sql Server Version2008 Updater2_sp2 Editionx86
Microsoft ≫ Sql Server Version2008 Updatesp3 Editionitanium
Microsoft ≫ Sql Server Version2008 Updatesp3 Editionx64
Microsoft ≫ Sql Server Version2008 Updatesp3 Editionx86
Microsoft ≫ Sql Server Version2012 Updatesp1 Editionx64
Microsoft ≫ Sql Server Version2012 Updatesp1 Editionx86
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 33.91% | 0.968 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 6.8 | 8 | 6.9 |
AV:N/AC:L/Au:S/C:N/I:N/A:C
|