The OS Vulnerability via XPSs report shows all extended stored procedures that grant non-Administrator users permission to access operating system functions.
| This report is not applicable to Azure SQL Database instances. Amazon RDS allows certain XSPs' configurations, such as SQL Agent, DMO, SMO, and xp_cmdshell. |
Some extended stored procedures give access to powerful system features. To avoid compromising the system security, review carefully the list of permissions and remove the ones that are not needed. |
Any member of the sysadmin always has permission to access these procedures. |
Follow these steps to create a report:

|