CVE-2017-8516: Infoleak
Microsoft SQL Server Analysis Services in Microsoft SQL Server 2012, Microsoft SQL Server 2014, and Microsoft SQL Server 2016 allows an information disclosure vulnerability when it improperly enforces permissions, aka "Microsoft SQL Server Analysis Services Information Disclosure Vulnerability".
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8516?
CVE-2017-8516 has a severity rating of Important due to its potential for information disclosure.
How do I fix CVE-2017-8516?
To remediate CVE-2017-8516, apply the latest security updates provided by Microsoft for affected SQL Server versions.
Which versions of SQL Server are affected by CVE-2017-8516?
CVE-2017-8516 affects Microsoft SQL Server 2012 SP3, 2014 SP1, 2014 SP2, and 2016.
What type of vulnerability is CVE-2017-8516?
CVE-2017-8516 is categorized as an information disclosure vulnerability.
What causes CVE-2017-8516?
CVE-2017-8516 is caused by improper enforcement of permissions in Microsoft SQL Server Analysis Services.