Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0086 (sql_server, data_engine, sql_server_desktop_engine, sql_server_express_edition)

BugsAlert Home > CVE-2008-0086 (sql_server, data_engine, sql_server_desktop_engine, sql_server_express_edition)
 
 

Buffer overflow in the convert function in Microsoft SQL Server 7.0 SP4, 2000 SP4, 2005 SP2, Microsoft Data Engine (MSDE) 1.0 SP4, SQL Server 2000 Desktop Engine (MSDE 2000) SP4, and 2005 Express Edition SP2 allows remote authenticated users to execute arbitrary code via a crafted SQL expression.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0086

Learn more about CVE-2008-0086 (sql_server, data_engine, sql_server_desktop_engine, sql_server_express_edition)
 
Tags: cve-2008-0086 sql server data engine sql server
 desktop engine sql server express edition

Related Items

      Wireless Voice Calls Gain Encryption

      CVE-2008-4822 (flash_player)

      Vuln: Move Media Player Quantum Streaming ActiveX Control Multiple Buffer Overflow Vulnerabilities

      FrSIRT - Mandriva Security Update Fixes Kernel Code Execution Vulnerability

      CVE-2008-2228 (Cyberfolio)

      CRYP_TAP-8

      Vuln: RETIRED: Microsoft Jet Database Engine MDB File Parsing Remote Code Execution Vulnerability

 

Pixel