Microsoft

Sql Server 2017

101 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.19%
  • Veröffentlicht 10.03.2026 17:05:07
  • Zuletzt bearbeitet 13.03.2026 20:14:30

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

Medienbericht
  • EPSS 2.04%
  • Veröffentlicht 10.03.2026 17:04:32
  • Zuletzt bearbeitet 10.07.2026 19:32:52

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

  • EPSS 1.13%
  • Veröffentlicht 11.11.2025 18:15:35
  • Zuletzt bearbeitet 17.11.2025 17:40:37

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

  • EPSS 1.34%
  • Veröffentlicht 09.09.2025 17:01:32
  • Zuletzt bearbeitet 12.09.2025 16:57:17

Improper neutralization of special elements used in a command ('command injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

  • EPSS 0.82%
  • Veröffentlicht 09.09.2025 17:01:09
  • Zuletzt bearbeitet 12.09.2025 16:47:05

Concurrent execution using shared resource with improper synchronization ('race condition') in SQL Server allows an authorized attacker to disclose information over a network.

  • EPSS 1.1%
  • Veröffentlicht 12.08.2025 17:09:55
  • Zuletzt bearbeitet 14.08.2025 01:20:16

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

  • EPSS 1.63%
  • Veröffentlicht 12.08.2025 17:09:49
  • Zuletzt bearbeitet 14.08.2025 17:14:01

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

  • EPSS 1.09%
  • Veröffentlicht 12.08.2025 17:09:43
  • Zuletzt bearbeitet 14.08.2025 01:20:00

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

  • EPSS 0.93%
  • Veröffentlicht 12.08.2025 17:09:42
  • Zuletzt bearbeitet 14.08.2025 01:20:25

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

Medienbericht
  • EPSS 10.52%
  • Veröffentlicht 08.07.2025 16:57:22
  • Zuletzt bearbeitet 17.07.2025 22:00:09

Improper input validation in SQL Server allows an unauthorized attacker to disclose information over a network.