VYPR
High severity7.5NVD Advisory· Published Aug 8, 2017· Updated Jun 17, 2026

CVE-2017-8516

CVE-2017-8516

Description

Microsoft SQL Server Analysis Services in Microsoft SQL Server 2012, Microsoft SQL Server 2014, and Microsoft SQL Server 2016 allows an information disclosure vulnerability when it improperly enforces permissions, aka "Microsoft SQL Server Analysis Services Information Disclosure Vulnerability".

Affected products

6
  • cpe:2.3:a:microsoft:sql_server:2012:sp3:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:microsoft:sql_server:2012:sp3:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:sql_server:2014:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:sql_server:2014:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:sql_server:2016:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:sql_server:2016:sp1:*:*:*:*:*:*
  • Microsoft Corporation/SQL Serverv5
    Range: Microsoft SQL Server 2012, Microsoft SQL Server 2014, and Microsoft SQL Server 2016

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.