CVE-2002-0186: Buffer Overflow
Buffer overflow in the SQLXML ISAPI extension of Microsoft SQL Server 2000 allows remote attackers to execute arbitrary code via data queries with a long content-type parameter, aka "Unchecked Buffer in SQLXML ISAPI Extension."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0186?
CVE-2002-0186 is classified as a critical vulnerability due to its ability to allow remote code execution.
How do I fix CVE-2002-0186?
To fix CVE-2002-0186, it is recommended to apply the latest service pack for Microsoft SQL Server 2000 or implement relevant security patches.
What software versions are affected by CVE-2002-0186?
CVE-2002-0186 affects Microsoft SQL Server 2000, specifically versions 2000, 2000 SP1, and 2000 SP2.
Who can exploit CVE-2002-0186?
CVE-2002-0186 can be exploited by remote attackers who send specially crafted data queries to the SQLXML ISAPI extension.
What is the nature of the vulnerability in CVE-2002-0186?
CVE-2002-0186 is a buffer overflow vulnerability that results from improper handling of long content-type parameters.