A security feature bypass vulnerability exists in SQL Server Reporting Services (SSRS) when the server improperly validates attachments uploaded to reports, aka 'SQL Server Reporting Services Security Feature Bypass Vulnerability'.
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1044 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-09-11 10:15
Updated : 2020-09-16 07:14
NVD link : CVE-2020-1044
Mitre link : CVE-2020-1044
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
microsoft
- sql_server_reporting_services