Microsoft SQL Server Administrator Cached Connection Vulnerability
BID:2863
Info
Microsoft SQL Server Administrator Cached Connection Vulnerability
| Bugtraq ID: | 2863 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 12 2001 12:00AM |
| Updated: | Jun 12 2001 12:00AM |
| Credit: | Published in a Microsoft Security Bulletin MS01-032 on June 12, 2001. |
| Vulnerable: |
Microsoft SQL Server 2000 SP1 Microsoft SQL Server 2000 Microsoft SQL Server 7.0 SP3 Microsoft SQL Server 7.0 SP2 Microsoft SQL Server 7.0 SP1 Microsoft SQL Server 7.0 |
| Not Vulnerable: | |
Discussion
Microsoft SQL Server Administrator Cached Connection Vulnerability
Due to a flaw in the handling of specially crafted ad hoc queries, it is possible for a logged in user to utilize the ad hoc query in such a way that the use of the system administrator's cached connection would be invoked rather than that of the user. This would enable the user to access the database with administrative privileges.
Due to a flaw in the handling of specially crafted ad hoc queries, it is possible for a logged in user to utilize the ad hoc query in such a way that the use of the system administrator's cached connection would be invoked rather than that of the user. This would enable the user to access the database with administrative privileges.
Exploit / POC
Microsoft SQL Server Administrator Cached Connection Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Microsoft SQL Server Administrator Cached Connection Vulnerability
References:
References: