Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2001-0542
Description:Buffer overflows in Microsoft SQL Server 7.0 and 2000 allow attackers with access to SQL Server to execute arbitrary code through the functions (1) raiserror, (2) formatmessage, or (3) xp_sprintf. NOTE: the C runtime format string vulnerability reported in MS01-060 is identified by CVE-2001-0879.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2001-0542
@stake Security Advisory: A122001-1
http://www.atstake.com/research/advisories/2001/a122001-1.txt
BugTraq ID: 3733
http://www.securityfocus.com/bid/3733
Bugtraq: 20011221 @stake advisory: Multiple overflow and format string vulnerabilities in in Microsoft SQL Server (Google Search)
http://marc.info/?l=bugtraq&m=100891252317406&w=2
CERT/CC vulnerability note: VU#700575
http://www.kb.cert.org/vuls/id/700575
Microsoft Security Bulletin: MS01-060
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-060
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A83
XForce ISS Database: mssql-text-message-bo(7724)
https://exchange.xforce.ibmcloud.com/vulnerabilities/7724




© 1998-2025 E-Soft Inc. All rights reserved.