SERVER-MSSQL -- Snort has detected traffic exploiting vulnerabilities in Microsoft SQL Server servers.
SERVER-MSSQL Microsoft SQL Server memory leak attempt
This rule searches for SQL queries that attempt to exploit a memory leak vulnerability through malicious REPLACE queries with UTF-16 characters.
This rule alerts on attempts to exploit a memory leak vulnerability in Microsoft SQL.
No public information
No known false positives
Cisco Talos Intelligence Group
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
Rule Categories::Server::SQL Server
MITRE::ATT&CK Framework::Enterprise::Reconnaissance::Gather Victim Host Information
Vulnerability::Severity::Critical
Vulnerability::Severity::High
Information Leak
Information Leakage happens when an attacker manipulates a system into revealing sensitive information, either through malformed input or by taking advantage of another feature of the system.
CVE-2025-49718 |
Loading description
|