CVE-2020-1455

MEDIUM

Microsoft SQL Server Management Studio - DoS

Title source: llm
STIX 2.1

Description

A denial of service vulnerability exists when Microsoft SQL Server Management Studio (SSMS) improperly handles files. An attacker could exploit the vulnerability to trigger a denial of service. To exploit the vulnerability, an attacker would first require execution on the victim system. The security update addresses the vulnerability by ensuring Microsoft SQL Server Management Studio properly handles files.

References (1)

Core 1
Core References

Scores

CVSS v3 5.3
EPSS 0.0123
EPSS Percentile 65.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

Details

Status published
Products (1)
microsoft/sql_server_management_studio < 18.6
Published Aug 17, 2020
Tracked Since Feb 18, 2026