New Search

MS SQL Server Bulk Insert Procedure Buffer Overflow

oval:org.mitre.oval:def:316

Buffer overflow in bulk insert procedure of Microsoft SQL Server 2000 including Microsoft SQL Server Desktop Engine (MSDE) 2000 allows attackers with database administration privileges to execute arbitrary code via a long filename in the BULK INSERT query.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows 2000
Class:
vulnerability
Reference(s):
  • CVE-2002-0641
Product(s):
  • Microsoft SQL Server 2000
  • Microsoft SQL Server 2000 Desktop Engine (WMSDE)