CVE-2007-4814: Buffer Overflow
Published Sep 11, 2007
·Updated
Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqldmo.dll) 2000.085.2004.00 in Microsoft SQL Server Enterprise Manager 8.05.2004 allows remote attackers to execute arbitrary code via a long second argument to the Start method.
Affected Software
1 affected component
Microsoft SQL Server=2005-sp2
Event History
Sep 11, 2007
CVE Published
07:17 PM
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4814?
CVE-2007-4814 is considered critical due to its ability to allow remote code execution.
2
How do I fix CVE-2007-4814?
To fix CVE-2007-4814, apply the latest security updates and patches provided by Microsoft for SQL Server.
3
Which software is affected by CVE-2007-4814?
CVE-2007-4814 affects Microsoft SQL Server 2005 SP2 specifically.
4
What type of vulnerability is CVE-2007-4814?
CVE-2007-4814 is a buffer overflow vulnerability in the SQLServer ActiveX control.
5
Can CVE-2007-4814 be exploited remotely?
Yes, CVE-2007-4814 can be exploited remotely by attackers via a long input to the Start method.