7.5 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
8.5 High
AI Score
Confidence
High
0.081 Low
EPSS
Percentile
94.3%
Buffer overflow in the password encryption function of Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, allows remote attackers to gain control of the database and execute arbitrary code via SQL Server Authentication, aka “Unchecked Buffer in Password Encryption Procedure.”
CPE | Name | Operator | Version |
---|---|---|---|
microsoft:msde | microsoft msde | eq | 2000 |
microsoft:sql_server | microsoft sql server | eq | 2000 |