Rewterz

Multiple Cisco Splunk Enterprise Vulnerabilities

July 9, 2025
Rewterz

Cobalt Strike Malware – Active IOCs

July 9, 2025

CVE-2025-49719 – Microsoft SQL Server Zero-Day Vulnerability

Severity

High

Analysis Summary

CVE-2025-49719

Improper input validation in Microsoft SQL Server allows an unauthorized attacker to disclose information over a network.

Impact

  • Information Disclosure

Indicators of Compromise

CVE

  • CVE-2025-49719

Affected Vendors

  • Microsoft

Affected Products

  • Microsoft SQL Server 2022 for x64-based Systems (CU 19) 16.0.1140.6
  • Microsoft SQL Server 2019 for x64-based Systems (CU 32) 15.0.4435.7
  • Microsoft SQL Server 2022 for x64-based Systems (GDR) 16.0.4200.1
  • Microsoft SQL Server 2017 for x64-based Systems (CU 31) 14.0.3495.9
  • Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 Azure Connect Feature Pack 13.0.7055.9
  • Microsoft SQL Server 2019 for x64-based Systems (GDR) 15.0.2135.5
  • Microsoft SQL Server 2016 for x64-based Systems Service Pack 2 (GDR) 13.0.6460.7
  • Microsoft SQL Server 2017 for x64-based Systems (GDR) 14.0.2075.8

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security Update Guide

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.