AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-7254

HIGH · CVSS 8.8 EPSS 11.89%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-11-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2016-7254
Severity
HIGH
CVSS
8.8
EPSS
11.89%
Microsoft

Original NVD Description

Microsoft SQL Server 2012 SP2 and 2012 SP3 does not properly perform a cast of an unspecified pointer, which allows remote authenticated users to gain privileges via unknown vectors, aka "SQL RDBMS Engine Elevation of Privilege Vulnerability."