Microsoft

Sql Server 2019

142 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.92%
  • Veröffentlicht 14.07.2026 17:08:01
  • Zuletzt bearbeitet 22.07.2026 16:50:46

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

Medienbericht
  • EPSS 0.62%
  • Veröffentlicht 14.07.2026 17:05:06
  • Zuletzt bearbeitet 04.08.2026 00:17:16

External control of file name or path in SQL Server allows an authorized attacker to elevate privileges over a network.

Medienbericht
  • EPSS 1.29%
  • Veröffentlicht 14.07.2026 17:05:05
  • Zuletzt bearbeitet 20.08.2026 17:18:16

Deserialization of untrusted data in SQL Server allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 1.29%
  • Veröffentlicht 14.07.2026 17:05:04
  • Zuletzt bearbeitet 20.08.2026 17:18:16

Deserialization of untrusted data in SQL Server allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.5%
  • Veröffentlicht 14.07.2026 17:04:15
  • Zuletzt bearbeitet 04.08.2026 00:16:43

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.

Medienbericht
  • EPSS 0.56%
  • Veröffentlicht 12.05.2026 16:59:21
  • Zuletzt bearbeitet 13.05.2026 15:34:52

External control of file name or path in SQL Server allows an authorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.25%
  • Veröffentlicht 14.04.2026 16:58:32
  • Zuletzt bearbeitet 07.05.2026 19:52:49

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.71%
  • Veröffentlicht 14.04.2026 16:57:48
  • Zuletzt bearbeitet 24.07.2026 22:10:00

Untrusted pointer dereference in SQL Server allows an authorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.3%
  • Veröffentlicht 14.04.2026 16:57:30
  • Zuletzt bearbeitet 07.05.2026 19:54:15

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally.

  • EPSS 1.1%
  • Veröffentlicht 10.03.2026 17:05:07
  • Zuletzt bearbeitet 13.03.2026 20:21:13

Improper validation of specified type of input in SQL Server allows an authorized attacker to elevate privileges over a network.