Loading
Buffer overflow in Microsoft SQL Server 2005 SP1 and SP2, and 2005 Express Edition SP1 and SP2, allows remote authenticated users to execute arbitrary code via a crafted insert statement.
Use CWE-119, Microsoft vendor hub and Data Engine product page to widen CVE-2008-0106 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2002-1145, CVE-2002-0721 and CVE-2008-0107 for nearby disclosures in the same product family. Additional editorial context is available in Weekly Security Roundup: Navigating the April 2026 Threat Landscape and Critical Framework Exploits.