{"id":"CVE-2020-0618","title":"A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.","summary":"A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.","severity":"high","cvss":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-502","CWE-502"],"vendor":"microsoft","product":"sql_server","affected":["sql_server = 2012","sql_server = 2014","sql_server = 2016"],"published":"2020-02-11","updated":"2026-08-15","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2020-0618","references":[{"url":"http://packetstormsecurity.com/files/156707/SQL-Server-Reporting-Services-SSRS-ViewState-Deserialization.html","label":"secure@microsoft.com"},{"url":"http://packetstormsecurity.com/files/159216/Microsoft-SQL-Server-Reporting-Services-2016-Remote-Code-Execution.html","label":"secure@microsoft.com"},{"url":"https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0618","label":"secure@microsoft.com"},{"url":"http://packetstormsecurity.com/files/156707/SQL-Server-Reporting-Services-SSRS-ViewState-Deserialization.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://packetstormsecurity.com/files/159216/Microsoft-SQL-Server-Reporting-Services-2016-Remote-Code-Execution.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0618","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0618","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild","exploit-available"],"epss":0.99022,"epssPercentile":0.99931,"kev":true,"kevDateAdded":"2024-09-18","kevDueDate":"2024-10-09","kevRansomware":true,"exploited":true,"exploitAvailable":true,"ingestedAt":"2026-08-15T04:24:40.489Z","exploits":{"exploitdb":true,"github":4,"githubRepos":["https://github.com/euphrat1ca/CVE-2020-0618","https://github.com/wortell/cve-2020-0618","https://github.com/itstarsec/CVE-2020-0618"],"metasploit":["exploit/windows/http/ssrs_navcorrector_viewstate"],"nuclei":["CVE-2020-0618"],"checkedAt":"2026-09-21T15:23:43.470Z"},"slug":"CVE-2020-0618","body":"## Overview\n\nA remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.\n\n## Affected\n\n- `sql_server = 2012`\n- `sql_server = 2014`\n- `sql_server = 2016`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"abyssal","depthScore":98,"depthScoreParts":{"impact":48.4,"likelihood":19.8,"exploitation":25,"ransomware":5},"changes":[]}