<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Microsoft SQL Server</title>
  <link>https://cvedaily.com/pages/tags/mssqlserver.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/mssqlserver.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Microsoft SQL Server</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:35 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-25879 – Langroid is a framework for building large-language-model-powered applications. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25879</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25879</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-25879</strong></p>
  <p>Langroid is a framework for building large-language-model-powered applications. Prior to version 0.63.0, SQLChatAgent executes SQL produced by an LLM, which is influenceable by prompt injection. When configured with a database role that has privileges enabling code execution or filesystem access (e.g., PostgreSQL pg_execute_server_program, MySQL FILE, MSSQL xp_cmdshell), an attacker who can shape…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25879">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-45721 – Algernon is a small self-contained pure-Go web server. Prior to 1.17.7, when Alg...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45721</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45721</guid>
    <pubDate>Tue, 26 May 2026 17:16:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-45721</strong></p>
  <p>Algernon is a small self-contained pure-Go web server. Prior to 1.17.7, when Algernon is asked for any URL path that resolves to a directory without an index file, DirPage walks upward through parent directories — past the configured server root — looking for a file named handler.lua to execute as the request handler. The loop terminates only after 100 ancestor steps or when filepath.Dir returns…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45721">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44680 – MikroORM is a TypeScript ORM for Node.js based on Data Mapper, Unit of Work and ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44680</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44680</guid>
    <pubDate>Tue, 26 May 2026 17:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44680</strong></p>
  <p>MikroORM is a TypeScript ORM for Node.js based on Data Mapper, Unit of Work and Identity Map patterns. Prior to @mikro-orm/knex 6.6.14 and @mikro-orm/sql 7.0.14, MikroORM's identifier-quoting helper (Platform.quoteIdentifier and the postgres/mssql overrides) and its JSON-path emitters (Platform.getSearchJsonPropertyKey, quoteJsonKey) did not properly escape characters that delimit the SQL identif…</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44680">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40370 – External control of file name or path in SQL Server allows an authorized attacke...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40370</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40370</guid>
    <pubDate>Tue, 12 May 2026 18:17:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40370</strong></p>
  <p>External control of file name or path in SQL Server allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-73</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40370">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-6093 – Corteza contains a SQL injection vulnerability in its Microsoft SQL Server (MSSQ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6093</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6093</guid>
    <pubDate>Mon, 11 May 2026 16:17:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-6093</strong></p>
  <p>Corteza contains a SQL injection vulnerability in its Microsoft SQL Server (MSSQL) backend when filtering Compose records by the meta field.This issue affects corteza: 2024.9.8.</p>
  <p><strong>CVSS:</strong> 6.0 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6093">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33120 – Untrusted pointer dereference in SQL Server allows an authorized attacker to exe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33120</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33120</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33120</strong></p>
  <p>Untrusted pointer dereference in SQL Server allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-822</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33120">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-32176 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32176</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32176</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-32176</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32176">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-32167 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32167</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32167</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-32167</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32167">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-14816 – Cleartext Storage of Sensitive Information in GUI vulnerability in Mitsubishi El...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14816</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14816</guid>
    <pubDate>Wed, 08 Apr 2026 14:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-14816</strong></p>
  <p>Cleartext Storage of Sensitive Information in GUI vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi Electric MobileHMI versions 10.97.3 and prior, Mitsubishi Electric Hyper Historian versions 10.97.3 and prior, Mitsubishi Electric AnalytiX versions 10.97.3 and prior, Mitsubishi Electric GENESIS versi…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-317</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14816">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-14815 – Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-14815</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-14815</guid>
    <pubDate>Wed, 08 Apr 2026 14:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-14815</strong></p>
  <p>Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi Electric MobileHMI versions 10.97.3 and prior, Mitsubishi Electric Hyper Historian versions 10.97.3 and prior, Mitsubishi Electric AnalytiX versions 10.97.3 and prior, Mitsubishi Electric GENESIS versions 11.…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14815">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-33375 – The Grafana MSSQL data source plugin contains a logic flaw that allows a low-pri...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33375</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33375</guid>
    <pubDate>Thu, 26 Mar 2026 21:17:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-33375</strong></p>
  <p>The Grafana MSSQL data source plugin contains a logic flaw that allows a low-privileged user (Viewer) to bypass API restrictions and trigger a catastrophic Out-Of-Memory (OOM) memory exhaustion, crashing the host container.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33375">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-25598 – HeidiSQL Portable 10.1.0.5464 contains a denial of service vulnerability that al...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-25598</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-25598</guid>
    <pubDate>Sun, 22 Mar 2026 14:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-25598</strong></p>
  <p>HeidiSQL Portable 10.1.0.5464 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the password field. Attackers can paste a buffer overflow payload into the password input during Microsoft SQL Server login to trigger an application crash.</p>
  <p><strong>CVSS:</strong> 6.2 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-25598">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-58112 – Microsoft Dynamics 365 Customer Engagement (on-premises) 1612 (9.0.2.3034) allow...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-58112</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-58112</guid>
    <pubDate>Wed, 18 Mar 2026 19:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-58112</strong></p>
  <p>Microsoft Dynamics 365 Customer Engagement (on-premises) 1612 (9.0.2.3034) allows the generation of customized reports via raw SQL queries in an upload of a .rdl (Report Definition Language) file; this is then processed by the SQL Server Reporting Service. An account with the privilege Add Reporting Services Reports can upload a malicious rdl file. If the malicious rdl file is already loaded and…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-58112">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32628 – AnythingLLM is an application that turns pieces of content into context that any...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32628</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32628</guid>
    <pubDate>Mon, 16 Mar 2026 14:19:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32628</strong></p>
  <p>AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. In 1.11.1 and earlier, a SQL injection vulnerability in the built-in SQL Agent plugin allows any user who can invoke the agent to execute arbitrary SQL commands on connected databases. The getTableSchemaSql() method in all three database connectors (MySQL, PostgreSQL, MSSQL)…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32628">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-25475 – SQL Server Password Changer 1.90 contains a buffer overflow vulnerability that a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-25475</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-25475</guid>
    <pubDate>Wed, 11 Mar 2026 19:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-25475</strong></p>
  <p>SQL Server Password Changer 1.90 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload. Attackers can inject 6000 bytes of data into the User Name and Registration Code field to trigger a denial of service condition.</p>
  <p><strong>CVSS:</strong> 6.2 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-25475">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26116 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26116</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26116</guid>
    <pubDate>Tue, 10 Mar 2026 18:18:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26116</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26116">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26115 – Improper validation of specified type of input in SQL Server allows an authorize...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26115</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26115</guid>
    <pubDate>Tue, 10 Mar 2026 18:18:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26115</strong></p>
  <p>Improper validation of specified type of input in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-1287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26115">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-21262 – Improper access control in SQL Server allows an authorized attacker to elevate p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21262</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21262</guid>
    <pubDate>Tue, 10 Mar 2026 18:18:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-21262</strong></p>
  <p>Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21262">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-15560 – An authenticated attacker with minimal permissions can exploit a SQL injection i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-15560</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-15560</guid>
    <pubDate>Thu, 19 Feb 2026 11:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-15560</strong></p>
  <p>An authenticated attacker with minimal permissions can exploit a SQL injection in the WorkTime server "widget" API endpoint to inject SQL queries. If the Firebird backend is used, attackers are able to retrieve all data from the database backend. If the MSSQL backend is used the attacker can execute arbitrary SQL statements on the database backend and gain access to sensitive data.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-15560">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-59095 – The program libraries (DLL) and binaries used by exos 9300 contain multiple hard...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59095</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59095</guid>
    <pubDate>Mon, 26 Jan 2026 10:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-59095</strong></p>
  <p>The program libraries (DLL) and binaries used by exos 9300 contain multiple hard-coded secrets. One notable example is the function "EncryptAndDecrypt" in the library Kaba.EXOS.common.dll. This algorithm uses a simple XOR encryption technique combined with a cryptographic key (cryptoKey) to transform each character of the input string. However, it's important to note that this implementation does…</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-798</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59095">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59093 – Exos 9300 instances are using a randomly generated database password to connect ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59093</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59093</guid>
    <pubDate>Mon, 26 Jan 2026 10:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59093</strong></p>
  <p>Exos 9300 instances are using a randomly generated database password to connect to the configured MSSQL server. The password is derived from static random values, which are concatenated to the hostname and a random string that can be read by every user from the registry. This allows an attacker to derive the database password and get authenticated access to the central exos 9300 database as the u…</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-656</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59093">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61943 – The vulnerability, if exploited, could allow an authenticated miscreant 
(Proces...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61943</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61943</guid>
    <pubDate>Fri, 16 Jan 2026 02:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61943</strong></p>
  <p>The vulnerability, if exploited, could allow an authenticated miscreant  (Process Optimization Standard User) to tamper with queries in Captive  Historian and achieve code execution under SQL Server administrative  privileges, potentially resulting in complete compromise of the SQL  Server.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61943">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-20803 – Missing authentication for critical function in SQL Server allows an authorized ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20803</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20803</guid>
    <pubDate>Tue, 13 Jan 2026 18:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-20803</strong></p>
  <p>Missing authentication for critical function in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20803">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-64298 – NMIS/BioDose V22.02 and previous version installations where the embedded Micros...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-64298</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-64298</guid>
    <pubDate>Tue, 02 Dec 2025 21:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-64298</strong></p>
  <p>NMIS/BioDose V22.02 and previous version installations where the embedded Microsoft SQLServer Express is used are exposed in the Windows share accessed by clients in networked installs. By default, this directory has insecure directory paths that allow access to the SQL Server database and configuration files, which can contain sensitive data.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-64298">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62575 – NMIS/BioDose V22.02 and previous versions rely on a Microsoft SQL Server databas...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62575</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62575</guid>
    <pubDate>Tue, 02 Dec 2025 21:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62575</strong></p>
  <p>NMIS/BioDose V22.02 and previous versions rely on a Microsoft SQL Server database. The SQL user account 'nmdbuser' and other created accounts by default have the sysadmin role. This can lead to remote code execution through the use of certain built-in stored procedures.</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62575">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61940 – NMIS/BioDose V22.02 and previous versions rely on a common SQL Server user accou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61940</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61940</guid>
    <pubDate>Tue, 02 Dec 2025 21:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61940</strong></p>
  <p>NMIS/BioDose V22.02 and previous versions rely on a common SQL Server user account to access data in the database. User access in the client application is restricted by a password authentication check in the client software but the underlying database connection always has access. The latest version of NMIS/BioDose introduces an option to use Windows user authentication with the database, which…</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-603</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61940">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-10703 – Improper Control of Generation of Code ('Code Injection') vulnerability in Progr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10703</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10703</guid>
    <pubDate>Wed, 19 Nov 2025 16:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-10703</strong></p>
  <p>Improper Control of Generation of Code ('Code Injection') vulnerability in Progress DataDirect Connect for JDBC drivers, Progress DataDirect Open Access JDBC driver and Hybrid Data Pipeline allows Remote Code Inclusion.  The SpyAttribute connection option implemented by the DataDirect Connect for JDBC drivers, DataDirect Hybrid Data Pipeline JDBC driver and the DataDirect OpenAccess JDBC driver l…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10703">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-10702 – Improper Control of Generation of Code ('Code Injection') vulnerability in Progr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10702</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10702</guid>
    <pubDate>Wed, 19 Nov 2025 16:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-10702</strong></p>
  <p>Improper Control of Generation of Code ('Code Injection') vulnerability in Progress DataDirect Connect for JDBC drivers, Progress DataDirect Open Access JDBC driver and Hybrid Data Pipeline allows Remote Code Inclusion.   The SpyAttribute connection option implemented by the DataDirect Connect for JDBC drivers, DataDirect Hybrid Data Pipeline JDBC driver and the DataDirect OpenAccess JDBC driver…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10702">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59499 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59499</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59499</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59499</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59499">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-10640 – An unauthenticated attacker with access to TCP port 12306 of the WorkExaminer se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10640</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10640</guid>
    <pubDate>Tue, 21 Oct 2025 12:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-10640</strong></p>
  <p>An unauthenticated attacker with access to TCP port 12306 of the WorkExaminer server can exploit missing server-side authentication checks to bypass the login prompt in the WorkExaminer Professional console to gain administrative access to the WorkExaminer server and therefore all sensitive monitoring data. This includes monitored screenshots and keystrokes of all users.  The WorkExaminer Profess…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-602</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10640">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-11177 – The External Login plugin for WordPress is vulnerable to SQL Injection via the '...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-11177</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-11177</guid>
    <pubDate>Wed, 15 Oct 2025 09:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-11177</strong></p>
  <p>The External Login plugin for WordPress is vulnerable to SQL Injection via the 'log' parameter in all versions up to, and including, 1.11.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-11177">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59250 – Improper input validation in JDBC Driver for SQL Server allows an unauthorized a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59250</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59250</guid>
    <pubDate>Tue, 14 Oct 2025 17:16:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59250</strong></p>
  <p>Improper input validation in JDBC Driver for SQL Server allows an unauthorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59250">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-55227 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-55227</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-55227</guid>
    <pubDate>Tue, 09 Sep 2025 17:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-55227</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55227">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-47997 – Concurrent execution using shared resource with improper synchronization ('race ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47997</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47997</guid>
    <pubDate>Tue, 09 Sep 2025 17:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-47997</strong></p>
  <p>Concurrent execution using shared resource with improper synchronization ('race condition') in SQL Server allows an authorized attacker to disclose information over a network.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47997">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53727 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53727</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53727</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53727</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53727">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49759 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49759</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49759</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49759</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49759">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49758 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49758</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49758</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49758</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49758">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47954 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47954</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47954</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47954</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47954">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-24999 – Improper access control in SQL Server allows an authorized attacker to elevate p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-24999</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-24999</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-24999</strong></p>
  <p>Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-24999">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49719 – Improper input validation in SQL Server allows an unauthorized attacker to discl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49719</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49719</guid>
    <pubDate>Tue, 08 Jul 2025 17:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49719</strong></p>
  <p>Improper input validation in SQL Server allows an unauthorized attacker to disclose information over a network.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49719">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49718 – Use of uninitialized resource in SQL Server allows an unauthorized attacker to d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49718</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49718</guid>
    <pubDate>Tue, 08 Jul 2025 17:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49718</strong></p>
  <p>Use of uninitialized resource in SQL Server allows an unauthorized attacker to disclose information over a network.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-908</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49718">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49717 – Heap-based buffer overflow in SQL Server allows an authorized attacker to execut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49717</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49717</guid>
    <pubDate>Tue, 08 Jul 2025 17:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49717</strong></p>
  <p>Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49717">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-43713 – ASNA Assist and ASNA Registrar before 2025-03-31 allow deserialization attacks a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-43713</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-43713</guid>
    <pubDate>Thu, 03 Jul 2025 14:15:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-43713</strong></p>
  <p>ASNA Assist and ASNA Registrar before 2025-03-31 allow deserialization attacks against .NET remoting. These are Windows system services that support license key management and deprecated Windows network authentication. The services are implemented with .NET remoting and can be exploited via well-known deserialization techniques inherent in the technology. Because the services run with SYSTEM-leve…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-43713">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-29803 – Uncontrolled search path element in Visual Studio Tools for Applications and SQL...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29803</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29803</guid>
    <pubDate>Sat, 12 Apr 2025 02:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-29803</strong></p>
  <p>Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29803">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-29980 – A SQL injection issue has been discovered in eTRAKiT.net release 3.2.1.77. Due t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29980</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29980</guid>
    <pubDate>Thu, 20 Mar 2025 19:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-29980</strong></p>
  <p>A SQL injection issue has been discovered in eTRAKiT.net release 3.2.1.77. Due to improper input validation, a remote unauthenticated attacker can run arbitrary commands as the current MS SQL server account. It is recommended that the CRM feature is turned off while on eTRAKiT.net release 3.2.1.77. eTRAKiT.Net is no longer supported, and users are recommended to migrate to the latest version of C…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29980">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-52335 – A vulnerability has been identified in syngo.plaza VB30E (All versions &lt; VB30E_H...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-52335</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-52335</guid>
    <pubDate>Fri, 06 Dec 2024 14:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-52335</strong></p>
  <p>A vulnerability has been identified in syngo.plaza VB30E (All versions < VB30E_HF05). The affected application do not properly sanitize input data before sending it to the SQL server. This could allow an attacker with access to the application could use this vulnerability to execute malicious SQL commands to compromise the whole database.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-52335">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49021 – Microsoft SQL Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49021</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49021</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49021</strong></p>
  <p>Microsoft SQL Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49021">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49018 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49018</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49018</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49018</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-197</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49018">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49017 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49017</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49017</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49017</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49017">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49016 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49016</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49016</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49016</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49016">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49015 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49015</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49015</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49015</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49015">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49014 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49014</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49014</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49014</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49014">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49013 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49013</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49013</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49013</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49013">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49012 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49012</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49012</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49012</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49012">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49011 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49011</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49011</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49011</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49011">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49010 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49010</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49010</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49010</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49010">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49009 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49009</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49009</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49009</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49009">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49008 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49008</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49008</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49008</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49008">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49007 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49007</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49007</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49007</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49007">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49006 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49006</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49006</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49006</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49006">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49005 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49005</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49005</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49005</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49005">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49004 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49004</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49004</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49003 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49003</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49003</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49003</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49003">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49002 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49002</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49002</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49002</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49002">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49001 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49001</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49001</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49001</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49001">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49000 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49000</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49000</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49000</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49000">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-48999 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48999</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48999</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-48999</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48999">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-48998 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48998</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48998</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-48998</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48998">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-48997 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48997</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48997</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-48997</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48997">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-48996 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48996</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48996</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-48996</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48996">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-48995 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48995</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48995</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-48995</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48995">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-48994 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48994</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48994</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-48994</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48994">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-48993 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-48993</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-48993</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-48993</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-48993">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43462 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43462</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43462</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43462</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43462">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43459 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43459</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43459</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43459</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43459">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38255 – SQL Server Native Client Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38255</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38255</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38255</strong></p>
  <p>SQL Server Native Client Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38255">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43519 – Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerabilit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43519</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43519</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43519</strong></p>
  <p>Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-197</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43519">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43474 – Microsoft SQL Server Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43474</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43474</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43474</strong></p>
  <p>Microsoft SQL Server Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-170</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43474">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37980 – Microsoft SQL Server Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37980</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37980</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37980</strong></p>
  <p>Microsoft SQL Server Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37980">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37966 – Microsoft SQL Server Native Scoring Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37966</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37966</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37966</strong></p>
  <p>Microsoft SQL Server Native Scoring Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37966">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37965 – Microsoft SQL Server Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37965</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37965</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37965</strong></p>
  <p>Microsoft SQL Server Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37965">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37342 – Microsoft SQL Server Native Scoring Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37342</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37342</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37342</strong></p>
  <p>Microsoft SQL Server Native Scoring Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37342">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37341 – Microsoft SQL Server Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37341</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37341</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37341</strong></p>
  <p>Microsoft SQL Server Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37341">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37340 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37340</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37340</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37340</strong></p>
  <p>Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-822</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37340">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37339 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37339</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37339</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37339</strong></p>
  <p>Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-822</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37339">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37338 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37338</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37338</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37338</strong></p>
  <p>Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37338">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37337 – Microsoft SQL Server Native Scoring Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37337</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37337</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37337</strong></p>
  <p>Microsoft SQL Server Native Scoring Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-197</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37337">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37335 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37335</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37335</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37335</strong></p>
  <p>Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37335">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-26191 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-26191</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-26191</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-26191</strong></p>
  <p>Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-26191">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-26186 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-26186</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-26186</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-26186</strong></p>
  <p>Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-26186">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-6912 – Use of hard-coded MSSQL credentials in PerkinElmer ProcessPlus on Windows allows...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-6912</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-6912</guid>
    <pubDate>Mon, 22 Jul 2024 21:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-6912</strong></p>
  <p>Use of hard-coded MSSQL credentials in PerkinElmer ProcessPlus on Windows allows an attacker to login remove on all prone installations.This issue affects ProcessPlus: through 1.11.6507.0.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-798</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-6912">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38088 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38088</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38088</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38088</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38088">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38087 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38087</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38087</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38087</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38087">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37336 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37336</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37336</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37336</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37336">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37334 – Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37334</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37334</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37334</strong></p>
  <p>Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37334">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37333 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37333</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37333</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37333</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37333">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37332 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37332</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37332</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37332</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37332">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37331 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37331</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37331</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37331</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37331">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37330 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37330</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37330</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37330</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37330">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37329 – SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37329</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37329</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37329</strong></p>
  <p>SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37329">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
