![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.809096 |
Category: | Windows : Microsoft Bulletins |
Title: | Microsoft SQL Server Multiple Vulnerabilities (MS16-136) |
Summary: | Microsoft SQL Server is prone to multiple vulnerabilities. |
Description: | Summary: Microsoft SQL Server is prone to multiple vulnerabilities. Vulnerability Insight: The following vulnerabilities exist: - CVE-2016-7249, CVE-2016-7250, CVE-2016-7252, CVE-2016-7253, CVE-2016-7254: Privilege escalation - CVE-2016-7251: Cross-site scripting (XSS) Vulnerability Impact: Successful exploitation will allow remote attackers to gain elevated privileges that could be used to view, change, or delete data, or create new accounts, also can gain additional database and file information and to spoof content, disclose information, or take any action that the user could take on the site on behalf of the targeted user. Affected Software/OS: - Microsoft SQL Server 2012 x86/x64 Edition Service Pack 2 and prior - Microsoft SQL Server 2012 x86/x64 Edition Service Pack 3 and prior - Microsoft SQL Server 2014 x86/x64 Edition Service Pack 1 and prior - Microsoft SQL Server 2014 x86/x64 Edition Service Pack 2 and prior - Microsoft SQL Server 2016 x64 Edition Solution: See the referenced vendor advisory for a solution. CVSS Score: 6.5 CVSS Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2016-7249 BugTraq ID: 94037 http://www.securityfocus.com/bid/94037 Microsoft Security Bulletin: MS16-136 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-136 http://www.securitytracker.com/id/1037250 Common Vulnerability Exposure (CVE) ID: CVE-2016-7250 BugTraq ID: 94060 http://www.securityfocus.com/bid/94060 Common Vulnerability Exposure (CVE) ID: CVE-2016-7251 BugTraq ID: 94043 http://www.securityfocus.com/bid/94043 Common Vulnerability Exposure (CVE) ID: CVE-2016-7252 BugTraq ID: 94050 http://www.securityfocus.com/bid/94050 Common Vulnerability Exposure (CVE) ID: CVE-2016-7253 BugTraq ID: 94056 http://www.securityfocus.com/bid/94056 Common Vulnerability Exposure (CVE) ID: CVE-2016-7254 BugTraq ID: 94061 http://www.securityfocus.com/bid/94061 |
Copyright | Copyright (C) 2016 Greenbone AG |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |