First published: Tue Nov 14 2023(Updated: )
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows Server 2022 23H2 | ||
Microsoft Windows Server | ||
Microsoft Windows Server | ||
Microsoft Windows Server | ||
Microsoft Windows Server | ||
Microsoft Windows Server | ||
Microsoft Windows Server | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2019 | ||
Windows 11 | =23H2 | |
Windows 11 | =22H2 | |
Windows 11 | =22H2 | |
Windows 11 | =21H2 | |
Windows 11 | =21H2 | |
Windows 11 | =23H2 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | <10.0.10240.20308 | |
Microsoft Windows 10 | <10.0.10240.20308 | |
Microsoft Windows 10 | <10.0.14393.6452 | |
Microsoft Windows 10 | <10.0.14393.6452 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Windows 11 | <10.0.22000.2600 | |
Windows 11 | <10.0.22000.2600 | |
Windows 11 | <10.0.22621.2715 | |
Windows 11 | <10.0.22621.2715 | |
Windows 11 | <10.0.22621.2715 | |
Windows 11 | <10.0.22621.2715 | |
Microsoft Windows Server | =r2 | |
Microsoft Windows Server | =sp2 | |
Microsoft Windows Server | ||
Microsoft Windows Server | =r2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 | ||
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =1607 | |
Windows 10 | =1607 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | ||
Windows 10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36402 is a vulnerability in the Microsoft WDAC OLE DB provider for SQL Server that allows remote code execution.
The severity of CVE-2023-36402 is high, with a severity score of 8.8.
The affected software products include Microsoft Windows Server 2012 R2, Windows 10 (21H2), Windows Server 2008, Windows Server 2012, Windows Server 2022, Windows Server 2019, Windows 10 (1607), Windows 11 (22H2), Windows 11 (21H2), Windows 10 (1809), Windows 11 (23H2), Windows Server 2008 R2, Windows Server 2016, Windows Server 2022 (23H2 Edition).
To fix CVE-2023-36402, apply the relevant security patches provided by Microsoft for the affected software products. Visit the respective Microsoft support pages for more details and download links.
You can find more information about CVE-2023-36402 on the Microsoft Security Response Center (MSRC) website. Visit the provided reference link for specific details.