Microsoft SQL Server 2016 mishandles the FILESTREAM path, which allows remote authenticated users to gain privileges via unspecified vectors, aka "SQL Analysis Services Information Disclosure Vulnerability."
References
Configurations
History
21 Nov 2024, 02:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/94050 - | |
References | () http://www.securitytracker.com/id/1037250 - | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-136 - |
Information
Published : 2016-11-10 07:00
Updated : 2024-11-21 02:57
NVD link : CVE-2016-7252
Mitre link : CVE-2016-7252
CVE.ORG link : CVE-2016-7252
JSON object : View
Products Affected
microsoft
- sql_server
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor