Dec 2019:
CVE-2019-1332 Published on December 10, 2019
A cross-site scripting (XSS) vulnerability exists when Microsoft SQL Server Reporting Services (SSRS) does not properly sanitize a specially-crafted web request to an affected SSRS server, aka 'Microsoft SQL Server Reporting Services XSS Vulnerability'.
Products Associated with CVE-2019-1332
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2019-1332 are published in these products:
Affected Versions
Microsoft SQL Server 2017 Reporting Services:- Version unspecified is affected.
- Version unspecified is affected.
- Version unspecified is affected.
Exploit Probability
EPSS
1.93%
Percentile
83.13%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.