CVE-2000-0654: Medium severity Microsoft SQL Server vulnerability
Microsoft Enterprise Manager allows local users to obtain database passwords via the Data Transformation Service (DTS) package Registered Servers Dialog dialog, aka a variant of the "DTS Password" vulnerability.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0654?
CVE-2000-0654 is classified as a medium-severity vulnerability due to its potential for local users to access sensitive database passwords.
How do I fix CVE-2000-0654?
To fix CVE-2000-0654, it is recommended to apply the appropriate Microsoft security patches for SQL Server 7.0.
Who is affected by CVE-2000-0654?
CVE-2000-0654 affects Microsoft SQL Server 7.0 installations that utilize the Data Transformation Service functionality.
What are the potential impacts of CVE-2000-0654?
The potential impacts of CVE-2000-0654 include unauthorized access to database passwords, leading to possible data breaches.
Is CVE-2000-0654 exploitable remotely?
CVE-2000-0654 is not exploitable remotely as it requires local access to the affected system.