Dec 2019:
CVE-2019-1332 Published on December 10, 2019

A cross-site scripting (XSS) vulnerability exists when Microsoft SQL Server Reporting Services (SSRS) does not properly sanitize a specially-crafted web request to an affected SSRS server, aka 'Microsoft SQL Server Reporting Services XSS Vulnerability'.

NVD


Products Associated with CVE-2019-1332

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2019-1332 are published in these products:

 
 
 
 
 

Affected Versions

Microsoft SQL Server 2017 Reporting Services: Microsoft Power BI Report Server: Microsoft SQL Server 2019 Reporting Services:

Exploit Probability

EPSS
1.93%
Percentile
83.13%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.