Used Microsoft Security Bulletin MS02-038 for Windows?
Download.com has chosen not to provide a direct-download link for this product and offers this page for informational purposes only.
Developer’s Description
By Microsoft
- A buffer overrun vulnerability that occurs in several Database Consistency Checkers (DBCCs) that ship as part of SQL Server 2000. DBCCs are command console utilities that allow maintenance and other operations to be performed on a SQL Server. While many of these are executable only by sysadmin, some are executable by members of the db_owner and db_ddladmin roles as well. In the most serious case, exploiting this vulnerability would enable an attacker to run code in the context of the SQL Server service, thereby giving the attacker complete control over all databases on the server.
- A SQL injection vulnerability that occurs in two stored procedures used in database replication. One of these can only be run by users who have been assigned the db_owner role; the other, due to a permissions error, could be run by any user who could log onto the server interactively. Exploiting the vulnerability could enable an attacker to run operating system commands on the server, but is subject to significant mitigating factors as discussed below.
Used Microsoft Security Bulletin MS02-038 for Windows?
Explore More

DBF Viewer Plus
Free
DB2ToMysql
Trial version
InterBase Data Access Components for Delphi 2005
Trial version
AccessToOracle
Trial version
InterBase Data Access Components for C++Builder 6
Trial version
Microsoft SQL Server 7.0 Patch: Inappropriate Login Rights
Free
HL-DBExporter for MySQL
Trial version
Upsizing PRO
Trial version
SQL Index Console
Trial versionThe OptimalCloud
Trial versionxStarter Job Scheduler for Firebird/Interbase
Trial version
dotConnect for Salesforce SSIS
Trial version