CVE-2020-0618

Confirmed PUBLISHED

A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft...

Microsoft · Microsoft SQL Server, Microsoft SQL Server 2014 Service Pack 3 for x64-based Systems (GDR), Microsoft SQL Server 2014 Service Pack 3 for x64-based Systems (CU), Microsoft SQL Server 2016 for x64-based Systems Service Pack 2 (GDR), Microsoft SQL Server 2014 Service Pack 3 for 32-bit Systems (GDR), Microsoft SQL Server 2014 Service Pack 3 for 32-bit Systems (CU)
Exploited in the wild PoC available

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
Confirmed
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
In CISA KEV
CVSS / EPSS
8.8 High

At a Glance

A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.

cisa nessus_scanner nuclei_scanner microsoft metasploit
CVE Published
Feb 11, 2020
Exploitation Reported
Sep 18, 2024
CVSS
8.8 High
EPSS
Remote Low complexity No user interaction

Affected Versions

Vendor Product Version Status
Microsoft
Microsoft SQL Server

2012 for 32-bit Systems Service Pack 4 (QFE)

Affected
Microsoft
Microsoft SQL Server

2012 for x64-based Systems Service Pack 4 (QFE)

Affected
Microsoft
Microsoft SQL Server

2016 for x64-based Systems Service Pack 2 (CU)

Affected
Microsoft
Microsoft SQL Server 2014 Service Pack 3 for x64-based Systems (GDR)

unspecified

Affected
Microsoft
Microsoft SQL Server 2014 Service Pack 3 for x64-based Systems (CU)

unspecified

Affected
Microsoft
Microsoft SQL Server 2016 for x64-based Systems Service Pack 2 (GDR)

unspecified

Affected
Microsoft
Microsoft SQL Server 2014 Service Pack 3 for 32-bit Systems (GDR)

unspecified

Affected
Microsoft
Microsoft SQL Server 2014 Service Pack 3 for 32-bit Systems (CU)

unspecified

Affected

CVE References

Recommended Actions

  • Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
  • Check enrichment artifacts for scanner coverage and available PoCs before rolling remediation validation.
  • Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.