CVE-1999-0999

CVSS 2.0 Score 4.3 of 10 (medium)

Details

Published Nov 19, 1999
Updated: Nov 20, 2024
CWE ID 20

Summary

CVE-1999-0999 refers to a vulnerability in Microsoft SQL Server 7.0, where a remote attacker can trigger a denial-of-service condition by sending a malformed TDS (Tabular Data Stream) packet. This packet manipulation can overload the server's resources, causing the service to become unresponsive and become unavailable to legitimate users. The vulnerability can lead to significant downtime and potential loss of productivity for affected organizations. It is crucial that SQL Server 7.0 users patch their systems with the available Microsoft fix to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft SQL Server

Affected Vendors

  • Microsoft