CNCVE编号:CNCVE-20010344 CVE编号:CVE-2001-0344 安全级别:高 漏洞中文描述: Microsoft SQL Server 2000 Gold 与 7.0 中的一个SQL 查询方法使用了混合模式,它允许本地数据库用户通过重新使用对系统管理员(sa administrator) 账号的连接缓存获得特权。 漏洞英文描述: An SQL query method in Microsoft SQL Server 2000 Gold and 7.0 using Mixed Mode allows local database users to gain privileges by reusing a cached connection of the sa administrator account. 漏洞参考: MS:MS01-032 URL:http://www.microsoft.com/technet/security/bulletin/ms01-032.asp 系统类型: Win2000/NT 漏洞类型:设计错误