CVE-2025-29803
Visual Studio Tools for Applications and SQL Server Management Studio Elevation of Privilege Vulnerability
Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally.
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected products
Microsoft · SQL Server Management Studio 20.2Microsoft · Visual Studio Tools for Applications (VSTA)Microsoft · VSTA 2019 SDKMicrosoft · VSTA 2022 SDKWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →