← All CVEs

CVE-2000-0402

low · 2.1

The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in plaintext in a log file which is readable by any user, aka the "SQL Server 7.0 Service Pack Password" vulnerability.

2.1
CVSS
90.6%
EPSS (exploit prob.)
100th
EPSS percentile
2000-05-30
Published

AV:L/AC:L/Au:N/C:P/I:N/A:N

Affected products

VendorProductAffected versions
microsoftsql_server7.0
microsoftsql_server7.0
microsoftsql_server7.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2000-0402