Microsoft SQL Server 2016 does not properly perform a cast of an unspecified pointer, which allows remote authenticated users to gain privileges via unknown vectors, aka "SQL RDBMS Engine Elevation of Privilege Vulnerability."
References
Configurations
History
21 Nov 2024, 02:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/94037 - | |
References | () http://www.securitytracker.com/id/1037250 - | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-136 - |
Information
Published : 2016-11-10 07:00
Updated : 2024-11-21 02:57
NVD link : CVE-2016-7249
Mitre link : CVE-2016-7249
CVE.ORG link : CVE-2016-7249
JSON object : View
Products Affected
microsoft
- sql_server
CWE
CWE-264
Permissions, Privileges, and Access Controls