Описание
.NET and Visual Studio Remote Code Execution Vulnerability
FAQ
How could an attacker exploit this vulnerability?
A remote unauthenticated attacker could exploit this vulnerability by sending specially crafted requests to a vulnerable .NET webapp or by loading a specially crafted file into a vulnerable desktop app.
Обновления
Продукт | Статья | Обновление |
---|---|---|
Microsoft Visual Studio 2022 version 17.6 | ||
Microsoft Visual Studio 2022 version 17.8 | ||
Microsoft Visual Studio 2022 version 17.10 | ||
Microsoft Visual Studio 2022 version 17.11 | ||
.NET 9.0 installed on Linux | ||
.NET 9.0 installed on Mac OS | ||
.NET 9.0 installed on Windows | ||
PowerShell 7.5 installed on Windows | ||
PowerShell 7.5 installed on Linux | ||
PowerShell 7.5 installed on MacOS |
Показывать по
Возможность эксплуатации
Publicly Disclosed
Exploited
Latest Software Release
DOS
EPSS
9.8 Critical
CVSS3
Связанные уязвимости
.NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
Уязвимость средства разработки программного обеспечения Microsoft Visual Studio и программной платформы Microsoft.NET, позволяющая нарушителю выполнить произвольный код
EPSS
9.8 Critical
CVSS3