A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.
Published: 2020-02-19
Availability of proof-of-concept (PoC) code for recently disclosed remote code execution flaw in Microsoft SQL Server Reporting Services leaves sites vulnerable to attack.
https://github.com/Hghost0x00/CVE-2022-26134-GO
https://github.com/joupify/soc-cert-guardian-extension
https://github.com/wortell/cve-2020-0618
https://github.com/euphrat1ca/CVE-2020-0618
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0618
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0618