Operational Defect Database

BugZero found this defect 461 days ago.

Microsoft SQL Server | 2026957

Any member who has the DQS KB Operator (dqs_kb_operator) role or a higher privilege-level role can run codes on the computer that's hosting SQL Server as the account that's running the SQL Server service (default account is NT SERVICE\MSSQLSERVER).

Last update date:

2/14/2023

Affected products:

SQL Server 2016 on Linux

SQL Server 2016 on Windows

Affected releases:

build lower than 13.0.6430.49

Fixed releases:

13.0.6430.49

Description:

Any member who has the DQS KB Operator (dqs_kb_operator) role or a higher privilege-level role can run codes on the computer that's hosting SQL Server as the account that's running the SQL Server service (default account is NT SERVICE\MSSQLSERVER).

Additional Resources / Links

Share:

BugZero® Risk Score

What's this?

Coming soon

Status

Unavailable

Learn More

Search:

...