CVE-2024-49021
HIGHDescription
Microsoft SQL Server Remote Code Execution Vulnerability
Is your site exposed to CVE-2024-49021?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| microsoft | sql_server_2016 |
| microsoft | sql_server_2016 |
| microsoft | sql_server_2017 |
| microsoft | sql_server_2017 |
| microsoft | sql_server_2019 |
| microsoft | sql_server_2019 |
| microsoft | sql_server_2022 |
| microsoft | sql_server_2022 |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-49021? +
How severe is CVE-2024-49021? +
What products are affected by CVE-2024-49021? +
How do I check if I'm vulnerable to CVE-2024-49021? +
Related Vulnerabilities
A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potentially cause a denial …
Buffa is a pure-Rust Protocol Buffers implementation with first-class protobuf editions support. Prior to 0.7.0, a soundness bug in the …
A heap use-after-free existed when importing the blank-width characters of an ODF number format. A position value read from the …
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.3, an out-of-bounds heap read could occur …
rust-openssl is a set of OpenSSL bindings for the Rust programming language. In affected versions `ssl::select_next_proto` can return a slice …
XZ Utils provide a general-purpose data-compression library plus command-line tools. In XZ Utils 5.3.3alpha to 5.8.0, the multithreaded .xz decoder …