CVE-2026-47296 Microsoft SQL Server Elevation of Privilege Vulnerability
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-47296 Microsoft US