CVE-2002-0645

Microsoft SQL Server 2000 and MSDE 2000 - Authenticated SQL Injection via Stored Procedures

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 may allow authenticated users to execute arbitrary commands.

References (1)

Core 1
Core References

Scores

EPSS 0.0384
EPSS Percentile 89.1%

Details

Status published
Products (2)
microsoft/data_engine 2000
microsoft/sql_server 2000
Published Aug 12, 2002
Tracked Since Feb 18, 2026