VDB
CVE-2025-49718
CVE-2025-49718
PUBLISHED
Der Microsoft SQL Server ist ein relationales Datenbankmanagementsystem von Microsoft.
EPSS 21.98% · 95.9th percentile
Risk Scores
EPSS Score
21.98%
95.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Microsoft SQL Server 2019 (CU 32) <15.0.4435.7 | |
| Microsoft | Microsoft SQL Server 2019 (GDR) <15.0.2135.5 | |
| Microsoft | Microsoft SQL Server 2016 SP2 (GDR) <13.0.6460.7 | |
| Microsoft | Microsoft SQL Server 2017 (CU 31) <14.0.3495.9 | |
| Microsoft | Microsoft SQL Server 2017 (GDR) <14.0.2075.8 | |
| Microsoft | Microsoft SQL Server 2022 (CU 19) <16.0.4200.1 | |
| Microsoft | Microsoft SQL Server 2022 (GDR) <16.0.1140.6 | |
| Microsoft | Microsoft SQL Server 2016 SP3 Azure Connect Feature Pack <13.0.7055.9 |
Exploit Intelligence
- https://www.microsoft.com/en-us/msrc/exploitability-index?rtc=1 (msrc)
- https://lists.debian.org/debian-lts-announce/2025/10/msg00003.html (circl)
- http://www.openwall.com/lists/oss-security/2025/07/08/4 (circl)
- https://github.com/j6t/git-gui/security/advisories/GHSA-xfx7-68v4-v8fg (circl)
- https://github.com/j6t/git-gui/compare/dcda716dbc9c90bcac4611bd1076747671ee0906..a437f5bc93330a70b42a230e52f3bd036ca1b1da (circl)
- CIRCL seen: CVE-2025-46835 (circl-sighting)
- CIRCL seen: CVE-2025-46835 (circl-sighting)
- CIRCL seen: CVE-2025-46835 (circl-sighting)
- CIRCL seen: CVE-2025-46835 (circl-sighting)
- traffic_cve_webshell.yar (github-yara)
…and 7 more exploits
Timeline
- Jul 8, 2025 Coalition ESS Score
- Jul 8, 2025 CVE Published
- Jul 8, 2025 PoC Published
- Jul 8, 2025 PoC Published
- Jul 8, 2025 PoC Published
- Jul 9, 2025 EPSS Score
- Jul 10, 2025 Coalition ESS Score
- Jul 17, 2025 Coalition ESS Score
- Jul 18, 2025 EPSS Score
- Jul 28, 2025 EPSS Score
- Aug 2, 2025 PoC Published
- Aug 16, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-1493.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1493 advisory
- https://msrc.microsoft.com/update-guide/ advisory
- https://learn.microsoft.com/en-us/troubleshoot/sql/releases/download-and-install-latest-updates advisory