Security Advisory

CVE-2025-55227

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-09-09 17:01:32
Last updated 2026-02-20 16:01:05
Assigner microsoft
State PUBLISHED

Description

Improper neutralization of special elements used in a command (command injection) in SQL Server allows an authorized attacker to elevate privileges over a network.