VYPR
Unrated severityNVD Advisory· Published Aug 12, 2002· Updated Apr 16, 2026

CVE-2002-0695

CVE-2002-0695

Description

Buffer overflow in the Transact-SQL (T-SQL) OpenRowSet component of Microsoft Data Access Components (MDAC) 2.5 through 2.7 for SQL Server 7.0 or 2000 allows remote attackers to execute arbitrary code via a query that calls the OpenRowSet command.

Affected products

16
  • cpe:2.3:a:microsoft:data_access_components:1.5:*:*:*:*:*:*:*+ 15 more
    • cpe:2.3:a:microsoft:data_access_components:1.5:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.1.1.3711.11:ga:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.12.4202.3:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.5:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.5:gold:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.5:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.5:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.6:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.6:gold:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.6:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.6:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.7:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:data_access_components:2.7:gold:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:microsoft_data_access_components:2.12.4292.3_ga_clean:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.