CVE-2019-1313: Medium severity microsoft sql server management studio vulnerability
Published Oct 10, 2019
·Updated
An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when it improperly enforces permissions, aka 'SQL Server Management Studio Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1376.
Affected Software
2 affected components
Microsoft SQL Server Management Studio=18.3
Microsoft SQL Server Management Studio=18.3.1
Remediation
Event History
Oct 10, 2019
CVE Published
via MITRE·01:28 PM
Data Sourced
via MITRE·01:28 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-1313?
CVE-2019-1313 has a severity rating of important according to Microsoft's classification.
2
How do I fix CVE-2019-1313?
To fix CVE-2019-1313, you should update to the latest version of Microsoft SQL Server Management Studio.
3
What systems are affected by CVE-2019-1313?
CVE-2019-1313 affects Microsoft SQL Server Management Studio versions 18.3 and 18.3.1.
4
What type of vulnerability is CVE-2019-1313?
CVE-2019-1313 is classified as an information disclosure vulnerability.
5
What happens if CVE-2019-1313 is exploited?
Exploitation of CVE-2019-1313 may allow unauthorized users to access sensitive information.