Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-91601
HistoryOct 13, 2022 - 12:00 a.m.

Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability

2022-10-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
microsoft
ole db
sql server
remote code execution
vulnerability
network system
arbitrary code execution
data filtering
information security

EPSS

0.017

Percentile

88.1%

Microsoft OLE DB Provider for SQL Server is an API from Microsoft Corporation that allows unified access to data from a variety of sources.A remote code execution vulnerability exists in Microsoft OLE DB Provider for SQL Server, which stems from An attacker can exploit the vulnerability to cause arbitrary code execution when the network system or product fails to properly filter special elements in the process of constructing code segments from external input data.

EPSS

0.017

Percentile

88.1%