CVE-2024-28936

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:linux:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:windows:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:linux:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:windows:*:*
cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:visual_studio_2019:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*

History

14 Jan 2025, 20:50

Type Values Removed Values Added
First Time Microsoft visual Studio 2019
Microsoft visual Studio 2022
Microsoft sql Server 2019
Microsoft
Microsoft sql Server 2022
Microsoft odbc Driver For Sql Server
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28936 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28936 - Vendor Advisory
CPE cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:visual_studio_2019:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:windows:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:linux:*:*
cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

21 Nov 2024, 09:07

Type Values Removed Values Added
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28936 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28936 -

09 Apr 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-09 17:15

Updated : 2025-01-14 20:50


NVD link : CVE-2024-28936

Mitre link : CVE-2024-28936

CVE.ORG link : CVE-2024-28936


JSON object : View

Products Affected

microsoft

  • visual_studio_2019
  • sql_server_2022
  • sql_server_2019
  • visual_studio_2022
  • odbc_driver_for_sql_server
CWE
CWE-190

Integer Overflow or Wraparound

NVD-CWE-noinfo