FAQ
According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do? To successfully exploit this vulnerability, a user must execute a SQL command.
No description was published by MSRC.