CVE-2025-47954
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.
HIGH · CVSS 8.8
EPSS 0.0167
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0