SQL SERVER – Historical SSMS Vulnerability Assessment and Current Availability

SQL Vulnerability Assessment was available in older SSMS releases. My walkthrough used SSMS 17.4 with SQL Server 2012 or later.

An intact instrument is inspected in its open protective case beside separate assessment tools.

That database menu exposed Tasks > Vulnerability Assessment > Scan for Vulnerabilities. The user selected a report location and reviewed high, medium and low risk findings. Opening a check showed its assessment and suggested remediation.

Historical SSMS menu for starting a vulnerability scan.
Historical SSMS menu for starting a vulnerability scan.
Historical scan and report-location dialog.
Historical scan and report-location dialog.
Historical assessment report with risk categories.
Historical assessment report with risk categories.
Historical check details and suggested remediation.
Historical check details and suggested remediation.

SSMS removed this feature in version 19.1. A newer SSMS installation doesn’t restore that menu. Microsoft directs current assessment toward Defender for SQL. Choose the supported option for the deployment.

I investigate findings against an agreed baseline. Suggested remediation can affect permissions, applications and operations. Don’t apply every recommendation blindly. A clean scan doesn’t establish that every vulnerability or compliance requirement has been addressed.

A vulnerability scan is not a compliance certificate, it is evidence for investigation and remediation.

Published by Pinal Dave on SQLAuthority. More of my work at pinaldave.com.


Discover more from SQL Authority with Pinal Dave

Subscribe to get the latest posts sent to your email.

, SQL Server, SQL Server Management Studio, SQL Server Security
Previous Post
SQL SERVER – How to Restart SQL Azure Database?
Next Post
SQL SERVER – Slow Filestream Data Cleanup. What Should We Do?

Related Posts

3 Comments. Leave new

Leave a Reply

Your email address will not be published. Required fields are marked *

Fill out this field
Fill out this field
Please enter a valid email address.