← Back to CVEs
CVE-2002-1123
N/ADescription
Buffer overflow in the authentication function for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows remote attackers to execute arbitrary code via a long request to TCP port 1433, aka the "Hello" overflow.
CVE Details
CVSS v3.1 ScoreN/A
Published9/24/2002
Last Modified4/16/2026
Sourcenvd
Honeypot Sightings0
Affected Products
microsoft:data_enginemicrosoft:sql_server
References
http://marc.info/?l=bugtraq&m=102873609025020&w=2(cve@mitre.org)
http://online.securityfocus.com/archive/1/286220(cve@mitre.org)
http://www.ciac.org/ciac/bulletins/n-003.shtml(cve@mitre.org)
http://www.iss.net/security_center/static/9788.php(cve@mitre.org)
http://www.securityfocus.com/bid/5411(cve@mitre.org)
http://marc.info/?l=bugtraq&m=102873609025020&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://online.securityfocus.com/archive/1/286220(af854a3a-2127-422b-91ae-364da2661108)
http://www.ciac.org/ciac/bulletins/n-003.shtml(af854a3a-2127-422b-91ae-364da2661108)
http://www.iss.net/security_center/static/9788.php(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/5411(af854a3a-2127-422b-91ae-364da2661108)
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-056(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.