Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-36006


Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability


Published

2023-12-12T18:15:21.250

Last Modified

2024-11-21T08:09:09.403

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-121
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System microsoft windows_10_1507 < 10.0.10240.20345 Yes
Operating System microsoft windows_10_1607 < 10.0.14393.6529 Yes
Operating System microsoft windows_10_1809 < 10.0.17763.5206 Yes
Operating System microsoft windows_10_21h2 < 10.0.19041.3803 Yes
Operating System microsoft windows_10_22h2 < 10.0.19045.3803 Yes
Operating System microsoft windows_11_21h2 < 10.0.22000.2652 Yes
Operating System microsoft windows_11_22h2 < 10.0.22621.2861 Yes
Operating System microsoft windows_11_23h2 < 10.0.22631.2861 Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_server_2008 r2 Yes
Operating System microsoft windows_server_2012 - Yes
Operating System microsoft windows_server_2012 r2 Yes
Operating System microsoft windows_server_2016 - Yes
Operating System microsoft windows_server_2019 - Yes
Operating System microsoft windows_server_2022 - Yes

References