CVE-2020-0618
Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
5Exploited in Wild
YesDecision
Descriptions
A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.
Se presenta una vulnerabilidad de ejecución de código remota en Microsoft SQL Server Reporting Services cuando maneja inapropiadamente las peticiones de página, también se conoce como "Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability".
A vulnerability exists within Microsoft's SQL Server Reporting Services which can allow an attacker to craft an HTTP POST request with a serialized object to achieve remote code execution. The vulnerability is due to the fact that the serialized blob is not signed by the server.
Microsoft SQL Server Reporting Services contains a deserialization vulnerability when handling page requests incorrectly. An authenticated attacker can exploit this vulnerability to execute code in the context of the Report Server service account.
CVSS Scores
SSVC
- Decision:Act
Timeline
- 2019-11-04 CVE Reserved
- 2020-02-11 CVE Published
- 2020-02-15 First Exploit
- 2024-09-18 Exploited in Wild
- 2024-09-21 CVE Updated
- 2024-10-09 KEV Due Date
- 2024-10-28 EPSS Updated
CWE
- CWE-502: Deserialization of Untrusted Data
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
https://www.mdsec.co.uk/2020/02/cve-2020-0618-rce-in-sql-server-reporting-services-ssrs |
URL | Date | SRC |
---|---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0618 | 2022-01-01 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Microsoft Search vendor "Microsoft" | Sql Server Search vendor "Microsoft" for product "Sql Server" | 2012 Search vendor "Microsoft" for product "Sql Server" and version "2012" | sp4 |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Sql Server Search vendor "Microsoft" for product "Sql Server" | 2014 Search vendor "Microsoft" for product "Sql Server" and version "2014" | sp3 |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Sql Server Search vendor "Microsoft" for product "Sql Server" | 2016 Search vendor "Microsoft" for product "Sql Server" and version "2016" | sp2, x64 |
Affected
|