CVE-2023-36402: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-36402?
CVE-2023-36402 is a vulnerability in the Microsoft WDAC OLE DB provider for SQL Server that allows remote code execution.
What is the severity of CVE-2023-36402?
The severity of CVE-2023-36402 is high, with a severity score of 8.8.
Which software products are affected by CVE-2023-36402?
The affected software products include Microsoft Windows Server 2012 R2, Windows 10 (21H2), Windows Server 2008, Windows Server 2012, Windows Server 2022, Windows Server 2019, Windows 10 (1607), Windows 11 (22H2), Windows 11 (21H2), Windows 10 (1809), Windows 11 (23H2), Windows Server 2008 R2, Windows Server 2016, Windows Server 2022 (23H2 Edition).
How can I fix CVE-2023-36402?
To fix CVE-2023-36402, apply the relevant security patches provided by Microsoft for the affected software products. Visit the respective Microsoft support pages for more details and download links.
Where can I find more information about CVE-2023-36402?
You can find more information about CVE-2023-36402 on the Microsoft Security Response Center (MSRC) website. Visit the provided reference link for specific details.