#VU21658 Incorrect Default Permissions in Microsoft SQL Server Management Studio - CVE-2019-1376
Published: October 9, 2019 / Updated: October 9, 2019
Microsoft SQL Server Management Studio
Microsoft
Description
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to the affected software improperly enforces permissions. A local authenticated user with credentials allowing access to an affected SQL server database can gain additional database and file information.