<< Back
CVE Number Vulnerability Product Severity Date
CVE-2017-8516 Microsoft SQL Server Information Disclosure Vulnerability Microsoft SQL Server High 30-05-2024

Technical Information

An information disclosure vulnerability in Microsoft SQL Server when it improperly enforces permission. An authenticated attacker could exploit this vulnerability and could gain additional database and file information.

Patch Release Date: Aug 08, 2017
Further information on this vulnerability is available at: CVE-2017-8516

Affected Software

Microsoft SQL Server 2016 for x64-based Systems,
Microsoft SQL Server 2014 Service Pack 2 for x64-based Systems,
Microsoft SQL Server 2014 Service Pack 2 for 32-bit Systems,
Microsoft SQL Server 2014 Service Pack 1 for x64-based Systems,
Microsoft SQL Server 2014 Service Pack 1 for 32-bit Systems,
Microsoft SQL Server 2012 for x64-based Systems Service Pack 3,
Microsoft SQL Server 2012 for 32-bit Systems Service Pack 3,
Microsoft SQL Server 2016 for x64-based Systems Service Pack 1