[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability - CVE-2024-28935

ID: oval:org.secpod.oval:def:98888Date: (C)2024-04-11   (M)2024-04-10
Class: VULNERABILITYFamily: windows




An attacker could exploit the vulnerability by tricking an authenticated user into attempting to connect to a malicious SQL server via ODBC, which could result in the client receiving a malicious networking packet. This could allow the attacker to execute code remotely on the client.

Platform:
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Windows Server 2008
Microsoft Windows 10
Microsoft Windows 7
Microsoft Windows 8.1
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Product:
Microsoft ODBC Driver 18 for SQL Server
Microsoft ODBC Driver 17 for SQL Server
Microsoft SQL Server 2019
Microsoft SQL Server 2022
Microsoft Visual Studio 2022
Microsoft Visual Studio 2019
Reference:
CVE-2024-28935
CVE    1
CVE-2024-28935
CPE    1
cpe:/a:microsoft:sql_server:2019

© SecPod Technologies