CVE-2022-29143

Description

Microsoft SQL Server Remote Code Execution Vulnerability

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
2.22

Associated Vulnerability

VulnerabilityOS Platform
Microsoft SQL Server Remote Code Execution Vulnerability for SQL Server 2014 SP3 CU(KB5014164) 32-bitWindows
Microsoft SQL Server Remote Code Execution Vulnerability for SQL Server 2014 SP3 CU(KB5014164)Windows
Microsoft SQL Server Remote Code Execution Vulnerability for SQL Server 2016 SP2 CU(KB5014351)Windows
Microsoft SQL Server Remote Code Execution Vulnerability for SQL Server 2019 RTM CU(KB5014353)Windows
Microsoft SQL Server Remote Code Execution Vulnerability for SQL Server 2017 RTM CU(KB5014553)Windows
Microsoft SQL Server Remote Code Execution Vulnerability for SQL Server 2016 SP3 GDR (KB5014355)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-34035Security Update for SQL Server 2014 SP3 CU(KB5014164) 32-bit
PATCH-34036Security Update for SQL Server 2014 SP3 CU(KB5014164)
PATCH-34037Security Update for SQL Server 2016 SP2 CU(KB5014351)
PATCH-34033Security Update for SQL Server 2019 RTM CU(KB5014353)
PATCH-34034Security Update for SQL Server 2017 RTM CU(KB5014553)
PATCH-34042Security Update for SQL Server 2016 SP3 GDR (KB5014355)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234