peter bassill · operator
$ cve CVE-2018-8273 JSON

CVE-2018-8273

9.8
CRITICAL · CVSS 3.1 · EPSS 29.2% (pctl 98)

Patch early

EPSS 29.2% — above the 10% action threshold.

Description

A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL Server Remote Code Execution Vulnerability." This affects Microsoft SQL Server.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS29.21% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-787
On CISA KEVno
Public exploitnone known
Published2018-08-15
Last modified2026-06-17

Affected (1)

VendorProduct
microsoftsql server

References

→ the Explorer  ·  watch your stack  ·  NVD