Back
CVE-2002-0645
SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 may allow authenticated users to execute arbitrary commands.
Published: Aug 12, 2002
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (2)
| Vendor | Product | Version |
|---|---|---|
| microsoft | data_engine | 2000 |
| microsoft | sql_server | 2000 |
GitHub Security Advisory GHSA-jw23-q9m9-w62p
SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft...
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.84%
Top 11% most likely to be exploited
Threat Score
31.2 / 100
Data Sources
NVD
EPSS
GitHub