vulnerability

Microsoft CVE-2026-21262: SQL Server Elevation of Privilege Vulnerability

Severity
9
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:C)
Published
Mar 10, 2026
Added
Mar 10, 2026
Modified
Mar 10, 2026

Description

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

Solutions

msft-kb5077464-61e63ef8-b001-46d3-9160-49211efeb545-x64msft-kb5077465-8ec928cd-78d2-40be-af94-e46ea6cb760c-x64msft-kb5077466-f89069c6-04e6-4fa3-8e4f-b99a97ee0101-x64msft-kb5077468-1af6dca3-2502-4ac7-a7fa-4739d3091026-x64msft-kb5077469-9f951933-4250-438a-bcfb-6a76526452ae-x64msft-kb5077470-50b46e28-95f0-4efb-9b5c-88443e821db1-x64msft-kb5077471-5f7d1ea6-7405-4238-a31c-60c867b137d3-x64msft-kb5077472-543cfe1b-d497-4900-afdc-239c8f6b0a7c-x64msft-kb5077474-9255f70b-5650-4071-ae2b-b447be9c2b6e-x64

References

    Title
    Rapid7 Labs

    2026 Global Threat Landscape Report

    The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.