Microsoft SQL Server Elevation of Privilege Vulnerability

Vulnerability

A vulnerability in SQL Server allows an authorized attacker to bypass authentication for critical functions, enabling privilege escalation over the network. This issue affects SQL Server 2022 and 2025 on x64-based systems.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to gain debugging privileges and access sensitive memory data.

Remediation

Users can update to the latest security patches available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles 5073177, 5072936, and 5073031.

Added: Jan 13, 2026, 8:29 PM
Updated: Jan 13, 2026, 8:29 PM

Vulnerability Rating

Custom Algorithm
spread
8.1
impact
5.0
exploitability
4.4
remediation
7.7
relevance
2.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.