oval:org.mitre.oval:def:29485
Definition Id: oval:org.mitre.oval:def:29485 | |||
Oval ID: | oval:org.mitre.oval:def:29485 | ||
Title: | SQL Server remote code execution vulnerability - CVE-2015-1762 (MS15-058) | ||
Description: | Microsoft SQL Server 2008 SP3 and SP4, 2008 R2 SP2 and SP3, 2012 SP1 and SP2, and 2014, when transactional replication is configured, does not prevent use of uninitialized memory in unspecified function calls, which allows remote authenticated users to execute arbitrary code by leveraging certain permissions and making a crafted query, as demonstrated by the VIEW SERVER STATE permission, aka "SQL Server Remote Code Execution Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2015-1762 | Version: | 3 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 R2 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP Microsoft Windows Server 2012 Microsoft Windows Server 2012 R2 Microsoft Windows 8 Microsoft Windows 8.1 | Product(s): | Microsoft SQL Server 2008 Microsoft SQL Server 2008 R2 Microsoft SQL Server 2012 Microsoft SQL Server 2014 |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:15803 | |||
Oval ID: | oval:org.mitre.oval:def:15803 | ||
Title: | Microsoft SQL Server 2008 R2 SP2 is installed | ||
Description: | Microsoft SQL Server 2008 R2 SP2 is installed | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2008_r2:sp2 | Version: | 9 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Microsoft SQL Server 2008 R2 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 oval:org.mitre.oval:def:28713 |
Definition Id: oval:org.mitre.oval:def:26140 | |||
Oval ID: | oval:org.mitre.oval:def:26140 | ||
Title: | Microsoft SQL Server 2014 is installed | ||
Description: | Microsoft SQL Server 2014 is installed | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2014 | Version: | 7 |
Platform(s): | Microsoft Windows Server 2008 R2 Microsoft Windows Server 2012 Microsoft Windows Server 2012 R2 Microsoft Windows 8 Microsoft Windows 8.1 | Product(s): | Microsoft SQL Server 2014 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 |
Definition Id: oval:org.mitre.oval:def:28999 | |||
Oval ID: | oval:org.mitre.oval:def:28999 | ||
Title: | Microsoft SQL Server 2008 Service Pack 4 is installed | ||
Description: | Microsoft SQL Server 2008 Service Pack 4 is installed | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2008:sp4 | Version: | 3 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Microsoft SQL Server 2008 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 |
Definition Id: oval:org.mitre.oval:def:15497 | |||
Oval ID: | oval:org.mitre.oval:def:15497 | ||
Title: | Microsoft SQL Server 2008 SP3 is installed | ||
Description: | Microsoft SQL Server 2008 SP3 is installed | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2008:sp3 | Version: | 17 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Microsoft SQL Server 2008 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 |
Definition Id: oval:org.mitre.oval:def:12596 | |||
Oval ID: | oval:org.mitre.oval:def:12596 | ||
Title: | Microsoft SQL Server 2008 R2 is installed | ||
Description: | Microsoft SQL Server 2008 R2 is installed. | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2008:r2 | Version: | 11 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Microsoft SQL Server 2008 R2 |
Definition Synopsis: | |||
| |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 oval:org.mitre.oval:def:15803 |
Definition Id: oval:org.mitre.oval:def:28713 | |||
Oval ID: | oval:org.mitre.oval:def:28713 | ||
Title: | Microsoft SQL Server 2008 R2 SP3 is installed | ||
Description: | Microsoft SQL Server 2008 R2 SP3 is installed. | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2008_r2:sp3 | Version: | 3 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Microsoft SQL Server 2008 R2 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 |
Definition Id: oval:org.mitre.oval:def:12454 | |||
Oval ID: | oval:org.mitre.oval:def:12454 | ||
Title: | Microsoft SQL Server 2008 is installed | ||
Description: | Microsoft SQL Server 2008 is installed. | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2008 | Version: | 19 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Microsoft SQL Server 2008 |
Definition Synopsis: | |||
| |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 oval:org.mitre.oval:def:28999 oval:org.mitre.oval:def:15497 |
Definition Id: oval:org.mitre.oval:def:29429 | |||
Oval ID: | oval:org.mitre.oval:def:29429 | ||
Title: | Microsoft SQL Server 2012 SP2 is installed | ||
Description: | Microsoft SQL Server 2012 SP2 is installed | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2012:sp2 | Version: | 3 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista | Product(s): | Microsoft SQL Server 2012 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 |
Definition Id: oval:org.mitre.oval:def:15044 | |||
Oval ID: | oval:org.mitre.oval:def:15044 | ||
Title: | Microsoft SQL Server 2012 is installed | ||
Description: | Microsoft SQL Server 2012 is installed. | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2012 | Version: | 15 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista | Product(s): | Microsoft SQL Server 2012 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 oval:org.mitre.oval:def:29429 oval:org.mitre.oval:def:21029 |
Definition Id: oval:org.mitre.oval:def:21029 | |||
Oval ID: | oval:org.mitre.oval:def:21029 | ||
Title: | Microsoft SQL Server 2012 SP1 is installed | ||
Description: | Microsoft SQL Server 2012 SP1 is installed. | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:microsoft:sql_server:2012:sp1 | Version: | 13 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista | Product(s): | Microsoft SQL Server 2012 |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:29485 |