Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4137 articles · 226306 vulns · 37/41 feeds (7d)
← Back to list
9.6
CVE-2026-65669PATCHED
microsoft · sql server management studio

Microsoft SQL Server Elevation of Privilege Vulnerability

Description

Improper neutralization of special elements in output used by a downstream component ('injection') in SQL Server allows an unauthorized attacker to elevate privileges over a network.

Affected Products

VendorProductVersions
microsoftsql server management studio22.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
microsoftmicrosoft windowscert_advisory90%
microsoftmicrosoft windows server 2012 r2cert_advisory90%

References

  • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65669(vendor-advisory, patch)

Related News (7 articles)

Tier E
Hacker News18h ago
From Select to Sysadmin: Hijacking Microsoft SQL Copilot (CVE-2026-65669)
→ No new info (linked only)
Tier B
BSI Advisories23d ago
[NEU] [kritisch] Microsoft Windows: Mehrere Schwachstellen
→ No new info (linked only)
Tier D
The Hacker News23d ago
Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days
→ No new info (linked only)
Tier B
CERT-FR23d ago
Multiples vulnérabilités dans les produits Microsoft (09 septembre 2026)
→ No new info (linked only)
Tier C
Qualys Blog23d ago
Microsoft and Adobe Patch Tuesday, September 2026 Security Update Review
→ No new info (linked only)
Tier C
VulDB23d ago
CVE-2026-65669 | Microsoft SQL Server up to 22.8.1 injection
→ No new info (linked only)
Tier A
Microsoft MSRC23d ago
CVE-2026-65669 Microsoft SQL Server Elevation of Privilege Vulnerability
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.19.6 CRITICAL
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
CISA KEV❌ No
Actively exploited❌ No
Patch available
22.8.2
CWECWE-74
PublishedSep 8, 2026
Last enriched23d ago
Trending Score60
Source articles7
Independent7
Info Completeness3/14
Missing: vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-58644EXPKEV
Microsoft SharePoint Remote Code Execution Vulnerability
Trending: 168
CRITICALCVE-2026-55040EXPKEV
Microsoft SharePoint Server Security Feature Bypass Vulnerability
Trending: 168
CRITICALCVE-2026-50522EXPKEV
Microsoft SharePoint Remote Code Execution Vulnerability
Trending: 161
MEDIUMCVE-2026-56164EXPKEV
Microsoft SharePoint Server Elevation of Privilege Vulnerability
Trending: 157
HIGHCVE-2026-63520EXPKEV
Microsoft SharePoint Server Remote Code Execution Vulnerability
Trending: 143

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Sep 8, 2026
Discovered by ZDM
Sep 8, 2026
Patch Available
Oct 1, 2026