CVE Tracker
205,665 total CVEsLive vulnerability feed from the National Vulnerability Database
Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a network.
Use after free in SQL Server allows an authorized attacker to execute code over a network.
Integer overflow or wraparound in SQL Server allows an authorized attacker to execute code over a network.
Generation of error message containing sensitive information in SQL Server allows an authorized attacker to disclose information over a network.
Heap-based buffer overflow in SQL Server allows an authorized attacker to elevate privileges over a network.
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
Stack-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
Untrusted pointer dereference in SQL Server allows an authorized attacker to execute code over a network.
Integer overflow or wraparound in SQL Server allows an unauthorized attacker to deny service over a network.
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.
Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.
Improper link resolution before file access ('link following') in SQL Server allows an authorized attacker to elevate privileges over a network.
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.
Improper privilege management in SQL Server allows an authorized attacker to elevate privileges over a network.
Insufficient logging in SQL Server allows an authorized attacker to bypass a security feature over a network.
Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate privileges over a network.
Insertion of sensitive information into sent data in Microsoft Teams for Android allows an authorized attacker to disclose information over a network.
Deserialization of untrusted data in Microsoft Dynamics 365 allows an authorized attacker to execute code over a network.
Improper neutralization of special elements in output used by a downstream component ('injection') in SQL Server allows an unauthorized attacker to elevate privileges over a network.
Insufficiently protected credentials in Microsoft Office allows an unauthorized attacker to perform spoofing over a network.
Showing 3001-3025 of 205,665 CVEs