IT

Tracker / CVE-2024-0056

CVE-2024-0056

High 8.7

Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnerability

Affected products and versions

microsoft .net
microsoft .net · 6.0.0 → 6.0.26
microsoft .net · 7.0.0 → 7.0.15
microsoft .net_framework
microsoft .net_framework · 4.8 → 4.8.04690.01
microsoft .net_framework · 4.8 → 4.8.04690.02
microsoft microsoft.data.sqlclient · 2.1 → 2.1.7
microsoft microsoft.data.sqlclient · 3.1 → 3.1.5
microsoft microsoft.data.sqlclient · 4.0 → 4.0.5
microsoft microsoft.data.sqlclient · 5.1 → 5.1.3
microsoft sql_server
microsoft system.data.sqlclient · … → 4.8.6
microsoft visual_studio_2022 · 17.2 → 17.2.23
microsoft visual_studio_2022 · 17.4 → 17.4.15
microsoft visual_studio_2022 · 17.6 → 17.6.11
microsoft visual_studio_2022 · 17.8 → 17.8.4

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References