Home

Description

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

PUBLISHED Reserved 2023-06-26 | Published 2023-10-10 | Updated 2025-04-14 | Assigner microsoft




HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Problem types

CWE-122: Heap-based Buffer Overflow

Product status

15.0.0 before 15.0.2104.1
affected

16.0.0 before 16.0.1105.1
affected

17.0.0.0 before 17.10.5.1
affected

17.0.0.0 before 17.10.5.1
affected

17.0.0.0 before 17.10.5.1
affected

18.0.0.0 before 18.3.2.1
affected

18.0.0.0 before 18.3.2.1
affected

18.0.0.0 before 18.3.2.1
affected

15.0.0 before 16.0.4080.1
affected

15.0.0 before 15.0.4326.1
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36730 (Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability) vendor-advisory

cve.org (CVE-2023-36730)

nvd.nist.gov (CVE-2023-36730)

Download JSON