CVE-2002-0695

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/08/2002
Last modified:
03/04/2025

Description

Buffer overflow in the Transact-SQL (T-SQL) OpenRowSet component of Microsoft Data Access Components (MDAC) 2.5 through 2.7 for SQL Server 7.0 or 2000 allows remote attackers to execute arbitrary code via a query that calls the OpenRowSet command.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:data_access_components:1.5:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.1:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.1.1.3711.11:ga:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.5:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.5:gold:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.5:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.5:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.6:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.6:gold:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.6:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.6:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.7:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.7:gold:*:*:*:*:*:*
cpe:2.3:a:microsoft:data_access_components:2.12.4202.3:*:*:*:*:*:*:*