First published: Tue Sep 11 2007(Updated: )
Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqldmo.dll) 2000.085.2004.00 in Microsoft SQL Server Enterprise Manager 8.05.2004 allows remote attackers to execute arbitrary code via a long second argument to the Start method.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft SQL Server | =2005-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4814 is considered critical due to its ability to allow remote code execution.
To fix CVE-2007-4814, apply the latest security updates and patches provided by Microsoft for SQL Server.
CVE-2007-4814 affects Microsoft SQL Server 2005 SP2 specifically.
CVE-2007-4814 is a buffer overflow vulnerability in the SQLServer ActiveX control.
Yes, CVE-2007-4814 can be exploited remotely by attackers via a long input to the Start method.