9
CVSSv2

CVE-2008-5416

Published: 10/12/2008 Updated: 12/10/2018
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 915
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and previous versions; SQL Server 2000 Desktop Engine (MSDE 2000) SP4; SQL Server 2005 SP2 and 9.00.1399.06; SQL Server 2000 Desktop Engine (WMSDE) on Windows Server 2003 SP1 and SP2; and Windows Internal Database (WYukon) SP2 allows remote authenticated users to cause a denial of service (access violation exception) or execute arbitrary code by calling the sp_replwritetovarbin extended stored procedure with a set of invalid parameters that trigger memory overwrite, aka "SQL Server sp_replwritetovarbin Limited Memory Overwrite Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft sql server 2000

microsoft sql server 2005

Exploits

## # $Id: ms09_004_sp_replwritetovarbinrb 11631 2011-01-24 19:37:58Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'ms ...
## # $Id: ms09_004_sp_replwritetovarbin_sqlirb 11730 2011-02-08 23:31:44Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## requir ...
<html> <% // k`sOSe 12/17/2008 // Microsoft SQL Server "sp_replwritetovarbin()" Heap Overflow // Tested on Win2k SP4 with MSSQL 2000(on one box only!) // Shellcode is a slightly modified metasploit reverse shell(on 1010101 port 4445), // the change allows multiple shots :) // // You need a valid SQL account, but you can also use this ...

Github Repositories

Microsoft SQL Server sp_replwritetovarbin Memory Corruption via SQL Injection

CVE-2008-5416 Microsoft SQL Server sp_replwritetovarbin Memory Corruption via SQL Injection A heap-based buffer overflow can occur when calling the undocumented "sp_replwritetovarbin" extended stored procedure This vulnerability affects all versions of Microsoft SQL Server 2000 and 2005, Windows Internal Database, and Microsoft Desktop Engine (MSDE) without the updat