Files
CVEs-PoC/2020/CVE-2020-0618.md
T
2024-05-25 21:48:12 +02:00

85 lines
4.6 KiB
Markdown

### [CVE-2020-0618](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-0618)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SQL%20Server%202014%20Service%20Pack%203%20for%2032-bit%20Systems%20(CU)&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SQL%20Server%202014%20Service%20Pack%203%20for%2032-bit%20Systems%20(GDR)&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SQL%20Server%202014%20Service%20Pack%203%20for%20x64-based%20Systems%20(CU)&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SQL%20Server%202014%20Service%20Pack%203%20for%20x64-based%20Systems%20(GDR)&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SQL%20Server%202016%20for%20x64-based%20Systems%20Service%20Pack%202%20(GDR)&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Microsoft%20SQL%20Server&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Remote%20Code%20Execution&color=brighgreen)
### Description
A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests, aka 'Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability'.
### POC
#### Reference
- http://packetstormsecurity.com/files/156707/SQL-Server-Reporting-Services-SSRS-ViewState-Deserialization.html
- http://packetstormsecurity.com/files/159216/Microsoft-SQL-Server-Reporting-Services-2016-Remote-Code-Execution.html
#### Github
- https://github.com/0x783kb/Security-operation-book
- https://github.com/0xT11/CVE-POC
- https://github.com/0xZipp0/BIBLE
- https://github.com/5thphlame/OSCP-NOTES-ACTIVE-DIRECTORY-1
- https://github.com/ARPSyndicate/cvemon
- https://github.com/ARPSyndicate/kenzer-templates
- https://github.com/Ashadowkhan/PENTESTINGBIBLE
- https://github.com/CnHack3r/Penetration_PoC
- https://github.com/EchoGin404/-
- https://github.com/EchoGin404/gongkaishouji
- https://github.com/Elsfa7-110/kenzer-templates
- https://github.com/Mathankumar2701/ALL-PENTESTING-BIBLE
- https://github.com/MedoX71T/PENTESTING-BIBLE
- https://github.com/Mr-xn/Penetration_Testing_POC
- https://github.com/NetW0rK1le3r/PENTESTING-BIBLE
- https://github.com/NetW0rK1le3r/awesome-hacking-lists
- https://github.com/OCEANOFANYTHING/PENTESTING-BIBLE
- https://github.com/Rayyan-appsec/ALL-PENTESTING-BIBLE
- https://github.com/Saidul-M-Khan/PENTESTING-BIBLE
- https://github.com/SexyBeast233/SecBooks
- https://github.com/SohelParashar/.Net-Deserialization-Cheat-Sheet
- https://github.com/YIXINSHUWU/Penetration_Testing_POC
- https://github.com/apachecn-archive/Middleware-Vulnerability-detection
- https://github.com/bhdresh/SnortRules
- https://github.com/blaCCkHatHacEEkr/PENTESTING-BIBLE
- https://github.com/cwannett/Docs-resources
- https://github.com/d4n-sec/d4n-sec.github.io
- https://github.com/developer3000S/PoC-in-GitHub
- https://github.com/dli408097/pentesting-bible
- https://github.com/euphrat1ca/CVE-2020-0618
- https://github.com/guzzisec/PENTESTING-BIBLE
- https://github.com/hacker-insider/Hacking
- https://github.com/hasee2018/Penetration_Testing_POC
- https://github.com/hectorgie/PoC-in-GitHub
- https://github.com/hktalent/ysoserial.net
- https://github.com/huike007/penetration_poc
- https://github.com/huike007/poc
- https://github.com/itstarsec/CVE-2020-0618
- https://github.com/jumpif0/test
- https://github.com/lions2012/Penetration_Testing_POC
- https://github.com/lovechinacoco/https-github.com-mai-lang-chai-Middleware-Vulnerability-detection
- https://github.com/merlinepedra/nuclei-templates
- https://github.com/merlinepedra25/nuclei-templates
- https://github.com/michael101096/cs2020_msels
- https://github.com/nitishbadole/PENTESTING-BIBLE
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/password520/Penetration_PoC
- https://github.com/phant0n/PENTESTING-BIBLE
- https://github.com/puckiestyle/ysoserial.net
- https://github.com/pwntester/ysoserial.net
- https://github.com/readloud/Awesome-Stars
- https://github.com/readloud/Pentesting-Bible
- https://github.com/sobinge/nuclei-templates
- https://github.com/soosmile/POC
- https://github.com/tdtc7/qps
- https://github.com/winterwolf32/CVE-S---Penetration_Testing_POC-
- https://github.com/wortell/cve-2020-0618
- https://github.com/xbl2022/awesome-hacking-lists
- https://github.com/xuetusummer/Penetration_Testing_POC
- https://github.com/yedada-wei/-
- https://github.com/yedada-wei/gongkaishouji
- https://github.com/yusufazizmustofa/BIBLE