SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  SQL Server Management Studio Information Disclosure (OCT 18)

Category: DB-ATTACKS      

An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when parsing malicious XML content containing a reference to an external entity. This affects SQL Server Management Studio 17.9, SQL Server Management Studio 18.0.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-8533


Relevant Information