Tracker / CVE-2024-0056
CVE-2024-0056
High 8.7
Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnerability
Affected products and versions
| microsoft | .net |
|---|---|
| microsoft | .net · 6.0.0 → 6.0.26 |
| microsoft | .net · 7.0.0 → 7.0.15 |
| microsoft | .net_framework |
| microsoft | .net_framework · 4.8 → 4.8.04690.01 |
| microsoft | .net_framework · 4.8 → 4.8.04690.02 |
| microsoft | microsoft.data.sqlclient · 2.1 → 2.1.7 |
| microsoft | microsoft.data.sqlclient · 3.1 → 3.1.5 |
| microsoft | microsoft.data.sqlclient · 4.0 → 4.0.5 |
| microsoft | microsoft.data.sqlclient · 5.1 → 5.1.3 |
| microsoft | sql_server |
| microsoft | system.data.sqlclient · … → 4.8.6 |
| microsoft | visual_studio_2022 · 17.2 → 17.2.23 |
| microsoft | visual_studio_2022 · 17.4 → 17.4.15 |
| microsoft | visual_studio_2022 · 17.6 → 17.6.11 |
| microsoft | visual_studio_2022 · 17.8 → 17.8.4 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.