Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
microsoft sql server 2019 vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2019-1068
A remote code execution vulnerability exists in Microsoft SQL Server when it incorrectly handles processing of internal functions, aka 'Microsoft SQL Server Remote Code Execution Vulnerability'.
Microsoft Sql Server 2014
Microsoft Sql Server 2016
Microsoft Sql Server 2017
1 Github repository
2 Articles
6.2
CVSSv2
CVE-2018-15664
In Docker up to and including 18.06.1-ce-rc2, the API endpoints behind the 'docker cp' command are vulnerable to a symlink-exchange attack with Directory Traversal, giving attackers arbitrary read-write access to the host filesystem with root privileges, because daemon/...
Docker Docker 17.06.0-ce
Docker Docker 17.06.1-ce
Docker Docker 17.06.2-ce
Docker Docker 17.07.0-ce
Docker Docker 17.09.0-ce
Docker Docker 17.09.1-ce-
Docker Docker 17.09.1-ce
Docker Docker 17.10.0-ce
Docker Docker 17.11.0-ce
Docker Docker 17.12.0-ce
Docker Docker 17.12.1-ce
Docker Docker 18.01.0-ce
Docker Docker 18.02.0-ce
Docker Docker 18.03.0-ce
Docker Docker 18.03.1-ce
Docker Docker 18.04.0-ce
Docker Docker 18.05.0-ce
Docker Docker 18.06.0-ce
Docker Docker 18.06.1-ce
3 Articles
6
CVSSv2
CVE-2022-29143
Microsoft SQL Server Remote Code Execution Vulnerability
Microsoft Sql Server 2014
Microsoft Sql Server 2016
Microsoft Sql Server 2017
Microsoft Sql Server 2019
4.6
CVSSv2
CVE-2022-23276
SQL Server for Linux Containers Elevation of Privilege Vulnerability
Microsoft Sql Server 2019
4.6
CVSSv2
CVE-2019-0880
A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka 'Microsoft splwow64 Elevation of Privilege Vulnerability'.
Microsoft Windows Server 2012 R2
Microsoft Windows 10 1607
Microsoft Windows 8.1 -
Microsoft Windows Server 2016 -
Microsoft Windows Rt 8.1 -
Microsoft Windows 10 1703
Microsoft Windows Server 2012 -
Microsoft Windows 10 -
Microsoft Windows 10 1709
Microsoft Windows 10 1803
Microsoft Windows Server 2016 1803
Microsoft Windows Server 2019 -
Microsoft Windows 10 1809
Microsoft Windows Server 2016 1903
Microsoft Windows 10 1903
3 Articles
4.3
CVSSv2
CVE-2019-1332
A cross-site scripting (XSS) vulnerability exists when Microsoft SQL Server Reporting Services (SSRS) does not properly sanitize a specially-crafted web request to an affected SSRS server, aka 'Microsoft SQL Server Reporting Services XSS Vulnerability'.
Microsoft Power Bi Report Server -
Microsoft Sql Server 2017 Reporting Services -
Microsoft Sql Server 2019 Reporting Services -
1 Github repository
1 Article
4.3
CVSSv2
CVE-2019-1112
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
Microsoft Office 365 Proplus -
Microsoft Office 2019
2 Articles
4
CVSSv2
CVE-2020-1044
<p>A security feature bypass vulnerability exists in SQL Server Reporting Services (SSRS) when the server improperly validates attachments uploaded to reports. An attacker who successfully exploited this vulnerability could upload file types that were disallowed by an admin...
Microsoft Sql Server Reporting Services 2017
Microsoft Sql Server Reporting Services 2019
4
CVSSv2
CVE-2019-1376
An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when it improperly enforces permissions, aka 'SQL Server Management Studio Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1313.
Microsoft Sql Server Management Studio 18.3.1
1 Article
4
CVSSv2
CVE-2019-1313
An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when it improperly enforces permissions, aka 'SQL Server Management Studio Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1376.
Microsoft Sql Server Management Studio 18.3.1
Microsoft Sql Server Management Studio 18.3
1 Article
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-30078
CVE-2024-37896
code injection
CVE-2024-3080
CVE-2024-5172
cross-site request forgery
CVE-2024-6111
firmware
CVE-2024-38504
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »