CVE-2021-1636
Description
Microsoft SQL Elevation of Privilege Vulnerability
Risk Information
Base Score
8.7
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
5.167
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Microsoft SQL Elevation of Privilege Vulnerability for SQL Server 2017 RTM CU(KB4583457) | Windows |
| Microsoft SQL Elevation of Privilege Vulnerability for SQL Server 2012 SP4 GDR (KB4583465) | Windows |
| Microsoft SQL Elevation of Privilege Vulnerability for SQL Server 2012 SP4 GDR (KB4583465) 32 bit | Windows |
| Microsoft SQL Elevation of Privilege Vulnerability for SQL Server 2016 SP2 CU(KB4583461) | Windows |
| Microsoft SQL Elevation of Privilege Vulnerability for SQL Server 2019 RTM CU(KB4583459) | Windows |
| Microsoft SQL Elevation of Privilege Vulnerability for SQL Server 2014 SP3 CU(KB4583462) | Windows |
| Microsoft SQL Elevation of Privilege Vulnerability for SQL Server 2014 SP3 CU(KB4583462) 32 bit | Windows |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-30718 | Security Update for SQL Server 2017 RTM CU(KB4583457) |
| PATCH-30713 | Security Update for SQL Server 2012 SP4 GDR (KB4583465) |
| PATCH-30714 | Security Update for SQL Server 2012 SP4 GDR (KB4583465) 32 bit |
| PATCH-30717 | Security Update for SQL Server 2016 SP2 CU(KB4583461) |
| PATCH-30719 | Security Update for SQL Server 2019 RTM CU(KB4583459) |
| PATCH-30715 | Security Update for SQL Server 2014 SP3 CU(KB4583462) |
| PATCH-30716 | Security Update for SQL Server 2014 SP3 CU(KB4583462) 32 bit |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234