Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.10674
Categoría:Service detection
Título:Microsoft's SQL UDP Info Query
Resumen:It is possible to determine the remote MS SQL server version.;; Microsoft SQL server has a function wherein remote users can query the database server for the; version that is being run. The query takes place over the same UDP port which handles the; mapping of multiple SQL server instances on the same machine.;; CAVEAT: It is important to note that, after Version 8.00.194, Microsoft decided not to update; this function. This means that the data returned by the SQL ping is inaccurate for newer releases; of SQL Server.
Descripción:Summary:
It is possible to determine the remote MS SQL server version.

Microsoft SQL server has a function wherein remote users can query the database server for the
version that is being run. The query takes place over the same UDP port which handles the
mapping of multiple SQL server instances on the same machine.

CAVEAT: It is important to note that, after Version 8.00.194, Microsoft decided not to update
this function. This means that the data returned by the SQL ping is inaccurate for newer releases
of SQL Server.

Solution:
If you are not running multiple instances of Microsoft SQL Server
on the same machine, it is suggested you filter incoming traffic to this port.

CVSS Score:
0.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:N

CopyrightCopyright (C) 2005 HD Moore

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.