The Drupal 7 Driver for SQL Server and SQL Azure Project is a specialized database-abstraction module that enables Drupal 7 installations to use Microsoft SQL Server and Azure SQL Database backends, serving a narrowly scoped but infrastructure-critical function. Its vulnerability profile centers on SQL-injection weaknesses arising from improper neutralization of special elements in database queries, a class of flaw that is characteristic of data-layer abstraction code operating between application logic and SQL backends. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Drupal 7 Driver For Sql Server And Sql Azure Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-7876HIGH The escapeLike function in sqlsrv/database.inc in the Drupal 7 driver for SQL Server and SQL Azure 7.x-1.x before 7.x-1.4 does not properly escape certain characters, which allows | Oct 21, 2015 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Drupal 7 Driver For Sql Server And Sql Azure Project.
Media articles that mention a CVE ID that affects a product developed by Drupal 7 Driver For Sql Server And Sql Azure Project — matched by CVE ID, not by vendor name.