microsoft sql_server_2025 の CVE(8 件)

CVE 件数: 8 CPE versions: View versions table

概要

本ページは microsoft sql_server_2025 に影響する公開済み CVE(NVD の CPE 経由で関連付け)を列挙します。各行に深刻度指標・概要・公開日が含まれます。

表示中 18 / 8 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2026-40370 External control of file name or path in SQL Server allows an authorized attacker to execute code over a network. [email protected] 8.8 0.50% 2026-05-12 2026-06-18
CVE-2026-33120 Untrusted pointer dereference in SQL Server allows an authorized attacker to execute code over a network. [email protected] 8.8 0.66% 2026-04-14 2026-05-06
CVE-2026-32176 Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally. [email protected] 6.7 0.24% 2026-04-14 2026-05-07
CVE-2026-32167 Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally. [email protected] 6.7 0.30% 2026-04-14 2026-05-07
CVE-2026-26116 Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network. [email protected] 8.8 1.19% 2026-03-10 2026-03-13
CVE-2026-26115 Improper validation of specified type of input in SQL Server allows an authorized attacker to elevate privileges over a network. [email protected] 8.8 1.06% 2026-03-10 2026-03-13
CVE-2026-21262 Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network. [email protected] 8.8 2.04% 2026-03-10 2026-03-13
CVE-2026-20803 Missing authentication for critical function in SQL Server allows an authorized attacker to elevate privileges over a network. [email protected] 7.2 1.24% 2026-01-13 2026-01-16
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence