CVE-2024-28935

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:linux:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:windows:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:linux:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:windows:*:*
cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:visual_studio_2019:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*

History

14 Jan 2025, 20:49

Type Values Removed Values Added
First Time Microsoft odbc Driver For Sql Server
Microsoft
Microsoft sql Server 2022
Microsoft sql Server 2019
Microsoft visual Studio 2022
Microsoft visual Studio 2019
CPE cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:linux:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2019:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:odbc_driver_for_sql_server:*:*:*:*:*:windows:*:*
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28935 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28935 - Vendor Advisory
CWE NVD-CWE-noinfo

21 Nov 2024, 09:07

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de ejecución remota de código del controlador ODBC de Microsoft para SQL Server
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28935 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28935 -

09 Apr 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-09 17:15

Updated : 2025-01-14 20:49


NVD link : CVE-2024-28935

Mitre link : CVE-2024-28935

CVE.ORG link : CVE-2024-28935


JSON object : View

Products Affected

microsoft

  • visual_studio_2022
  • odbc_driver_for_sql_server
  • visual_studio_2019
  • sql_server_2022
  • sql_server_2019
CWE
CWE-122

Heap-based Buffer Overflow

NVD-CWE-noinfo