CVE-2016-7249: High severity microsoft sql server vulnerability
Published Nov 10, 2016
·Updated
Microsoft SQL Server 2016 does not properly perform a cast of an unspecified pointer, which allows remote authenticated users to gain privileges via unknown vectors, aka "SQL RDBMS Engine Elevation of Privilege Vulnerability."
Affected Software
1 affected component
Microsoft SQL Server=2016
Event History
Nov 10, 2016
CVE Published
via MITRE·06:16 AM
Data Sourced
via MITRE·06:16 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-7249?
CVE-2016-7249 is classified as an Elevation of Privilege vulnerability.
2
How do I fix CVE-2016-7249?
To fix CVE-2016-7249, apply the latest security updates provided by Microsoft for SQL Server 2016.
3
Who is affected by CVE-2016-7249?
Remote authenticated users of Microsoft SQL Server 2016 are affected by CVE-2016-7249.
4
What impact does CVE-2016-7249 have on my system?
CVE-2016-7249 allows remote authenticated users to gain elevated privileges on the affected system.
5
Are there any known exploits for CVE-2016-7249?
As of now, there are no specific public exploits documented for CVE-2016-7249.