CVE-2023-28262
De multiples vulnérabilités ont été corrigées dans <span class="textit">les produits Microsoft</span>. Elles permettent à un attaquant de provoquer un déni de service, une atteinte à la confidentialité des données, une exécution de code à distance, une usurpation d'identité et une élévation de privilèges.
EPSS 0.46% · 64.5th percentile
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| microsoft | ole_db_driver_18_for_sql_server | 18.0.0 |
| Microsoft | Microsoft OLE DB Driver 18 for SQL Server | 18.0.0 |
| microsoft | odbc_driver_17_for_sql_server | 17.0.0.0 |
| Microsoft | Microsoft ODBC Driver 18 for SQL Server | 18.0.0.0 |
| Microsoft | Azure | |
| Microsoft | Microsoft ODBC Driver 17 for SQL Server | 17.0.0.0 |
| Microsoft | Microsoft OLE DB Driver 19 for SQL Server | 19.0.0 |
| microsoft | odbc_driver_18_for_sql_server | 18.0.0.0 |
| microsoft | ole_db_driver_19_for_sql_server | 19.0.0 |
| Microsoft | N/A | |
| microsoft | visual_studio_2022 | 17.0, 17.0, 17.2 |
| microsoft | visual_studio_2019 | 16.0, 16.0, 16.0 |
Exploit Intelligence
- https://www.microsoft.com/en-us/msrc/exploitability-index?rtc=1 (msrc)
- Microsoft ODBC and OLE DB Remote Code Execution Vulnerability (circl)
- rules.yar (github-yara)
- rules.yar (github-yara)
- rules.yar (github-yara)
- rules.yar (github-yara)
- rules.yar (github-yara)
Timeline
- Apr 11, 2023 CVE Published
- Apr 12, 2023 EPSS Score
- May 20, 2023 EPSS Score
- Jun 26, 2023 EPSS Score
- Aug 3, 2023 EPSS Score
- Sep 10, 2023 EPSS Score
- Oct 18, 2023 EPSS Score
- Nov 24, 2023 EPSS Score
- Jan 1, 2024 EPSS Score
- Feb 8, 2024 EPSS Score
- Mar 17, 2024 EPSS Score
- Apr 23, 2024 EPSS Score