CVE-2024-37337
HIGHDescription
Microsoft SQL Server Native Scoring Information Disclosure Vulnerability
Is your site exposed to CVE-2024-37337?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| microsoft | sql_2016_azure_connect_feature_pack |
| microsoft | sql_server_2016 |
| microsoft | sql_server_2017 |
| microsoft | sql_server_2017 |
| microsoft | sql_server_2019 |
| microsoft | sql_server_2019 |
| microsoft | sql_server_2022 |
| microsoft | sql_server_2022 |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-37337? +
How severe is CVE-2024-37337? +
What products are affected by CVE-2024-37337? +
How do I check if I'm vulnerable to CVE-2024-37337? +
Related Vulnerabilities
LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a …
There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of …
Windows KDC Proxy Remote Code Execution Vulnerability
D-Link DAP-1360 webupg UPGCGI_CheckAuth Numeric Truncation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on …
Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability