First published: Tue Mar 12 2024(Updated: )
Microsoft Django Backend for SQL Server Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
pip/mssql-django | <1.4.1 | 1.4.1 |
Microsoft SQL Server | <1.4.1 | |
Microsoft SQL Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-26164 has a high severity rating due to its potential for remote code execution.
To fix CVE-2024-26164, upgrade to version 1.4.1 of the mssql-django package.
CVE-2024-26164 affects the Microsoft SQL Server backend for Django.
Yes, a patch is available in the form of an upgrade to version 1.4.1 of mssql-django.
CVE-2024-26164 is classified as a remote code execution vulnerability.