Microsoft SQL Server Analysis Services in Microsoft SQL Server 2012, Microsoft SQL Server 2014, and Microsoft SQL Server 2016 allows an information disclosure vulnerability when it improperly enforces permissions, aka "Microsoft SQL Server Analysis Services Information Disclosure Vulnerability".
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8516 | Patch Vendor Advisory |
http://www.securitytracker.com/id/1039110 | URL Repurposed |
http://www.securityfocus.com/bid/100041 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-08-08 14:29
Updated : 2022-10-26 18:04
NVD link : CVE-2017-8516
Mitre link : CVE-2017-8516
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
microsoft
- sql_server