Kaspersky ID:
KLA77105
Detect Date:
11/12/2024
Updated:
11/14/2024

Description

Multiple vulnerabilities were found in Microsoft SQL Server. Malicious users can exploit these vulnerabilities to execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. A remote code execution vulnerability in SQL Server Native Client can be exploited remotely to execute arbitrary code.
  2. A remote code execution vulnerability in Microsoft SQL Server can be exploited remotely to execute arbitrary code.
  3. A remote code execution vulnerability in Microsoft.SqlServer.XEvent.Configuration.dll can be exploited remotely to execute arbitrary code.

Original advisories

Related products

CVE list

  • CVE-2024-49009
    high
  • CVE-2024-49018
    high
  • CVE-2024-48997
    high
  • CVE-2024-49017
    high
  • CVE-2024-49012
    high
  • CVE-2024-49013
    high
  • CVE-2024-49006
    high
  • CVE-2024-49000
    high
  • CVE-2024-49021
    high
  • CVE-2024-49008
    high
  • CVE-2024-49015
    high
  • CVE-2024-48995
    high
  • CVE-2024-48998
    high
  • CVE-2024-49004
    high
  • CVE-2024-49001
    high
  • CVE-2024-49011
    high
  • CVE-2024-43462
    high
  • CVE-2024-49002
    high
  • CVE-2024-48999
    high
  • CVE-2024-49003
    high
  • CVE-2024-48996
    high
  • CVE-2024-49005
    high
  • CVE-2024-49007
    high
  • CVE-2024-43459
    high
  • CVE-2024-49043
    high
  • CVE-2024-49016
    high
  • CVE-2024-49010
    high
  • CVE-2024-38255
    high
  • CVE-2024-49014
    high
  • CVE-2024-48993
    high
  • CVE-2024-48994
    high

KB list

Read more

Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com

Found an inaccuracy in the description of this vulnerability? Let us know!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Learn more
New Kaspersky!
Your digital life deserves complete protection!
Learn more
Confirm changes?
Your message has been sent successfully.