Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x69g-4xxh-vgmc

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly check the permissions of objects that use reflection, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (XBAP) or (2) a crafted .NET Framework application, aka "Anonymous Method Injection Vulnerability."

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly check the permissions of objects that use reflection, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (XBAP) or (2) a crafted .NET Framework application, aka "Anonymous Method Injection Vulnerability."

EPSS

Процентиль: 92%
0.0861
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
больше 12 лет назад

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly check the permissions of objects that use reflection, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (XBAP) or (2) a crafted .NET Framework application, aka "Anonymous Method Injection Vulnerability."

EPSS

Процентиль: 92%
0.0861
Низкий

Дефекты

CWE-94