IT

Tracker / CVE-2025-29803

CVE-2025-29803

High 7.3

Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally.

Affected products and versions

microsoft sql_server_management_studio · … → 20.2.1
microsoft visual_studio_tools_for_applications_2019 · … → 16.0.35907.0
microsoft visual_studio_tools_for_applications_2019_sdk · … → 16.0.35907.0
microsoft visual_studio_tools_for_applications_2022 · … → 17.0.35906.0
microsoft visual_studio_tools_for_applications_2022_sdk · … → 17.0.35906.0

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References