Microsoft SQL Server SQLXML Script Injection Vulnerability

Bugtraq ID: 5005
Class: Input Validation Error
CVE: CVE-2002-0187
Remote: Yes
Local: No
Published: Jun 12 2002 12:00AM
Updated: Jul 11 2009 01:56PM
Credit: Credited to Matt Moore of Westpoint Ltd.
Vulnerable: Microsoft SQL Server 2000 SP2
Microsoft SQL Server 2000 SP1
- Microsoft Windows 2000 Professional SP2
- Microsoft Windows 2000 Professional SP1
- Microsoft Windows 2000 Professional
- Microsoft Windows NT 4.0 SP6a
- Microsoft Windows NT 4.0 SP6
- Microsoft Windows NT 4.0 SP5
Microsoft SQL Server 2000
- Microsoft Windows 2000 Professional SP2
- Microsoft Windows 2000 Professional SP1
- Microsoft Windows 2000 Professional
- Microsoft Windows NT 4.0 SP6a
- Microsoft Windows NT 4.0 SP6
- Microsoft Windows NT 4.0 SP5
- Microsoft Windows NT 4.0
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus