Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-0311 | Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnerability |
Github GHSA |
GHSA-98g6-xh36-x2p7 | Microsoft.Data.SqlClient and System.Data.SqlClient vulnerable to SQL Data Provider Security Feature Bypass |
Tue, 03 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 31 Dec 2024 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:microsoft:.net:4.7.2:*:*:*:*:*:*:* cpe:2.3:a:microsoft:.net:4.8.1:*:*:*:*:*:*:* cpe:2.3:a:microsoft:.net:4.8:*:*:*:*:*:*:* cpe:2.3:a:microsoft:.net:6.0.0:*:*:*:*:*:*:* cpe:2.3:a:microsoft:.net:7.0.0:*:*:*:*:*:*:* cpe:2.3:a:microsoft:.net:8.0.0:*:*:*:*:*:*:* cpe:2.3:a:microsoft:System.Data.SqlClient:-:*:*:*:*:*:*:* cpe:2.3:a:microsoft:data_sql_client:2.1:*:*:*:*:*:*:* cpe:2.3:a:microsoft:data_sql_client:3.1:*:*:*:*:*:*:* cpe:2.3:a:microsoft:data_sql_client:4.0:*:*:*:*:*:*:* cpe:2.3:a:microsoft:data_sql_client:5.1:*:*:*:*:*:*:* cpe:2.3:a:microsoft:visual_studio:2022:*:*:*:*:*:*:* cpe:2.3:a:microsoft:visual_studio_2022:17.2:*:*:*:*:*:*:* cpe:2.3:a:microsoft:visual_studio_2022:17.4:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft system.data.sqlclient
Microsoft data Sql Client Microsoft visual Studio |
Subscriptions
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2025-06-03T14:30:31.644Z
Reserved: 2023-11-22T17:43:06.743Z
Link: CVE-2024-0056
Updated: 2024-08-01T17:41:15.885Z
Status : Modified
Published: 2024-01-09T18:15:46.783
Modified: 2024-11-21T08:45:49.180
Link: CVE-2024-0056
OpenCVE Enrichment
No data.
EUVD
Github GHSA