Описание
.NET Tampering Vulnerability
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| .NET 8.0 | ||
| .NET 8.0 installed on Windows | ||
| .NET 8.0 installed on Linux | ||
| .NET 8.0 installed on Mac OS | ||
| .NET 9.0 installed on Linux | ||
| .NET 9.0 installed on Mac OS | ||
| .NET 9.0 installed on Windows | ||
| .NET 10.0 installed on Windows | ||
| .NET 10.0 installed on Mac OS | ||
| .NET 10.0 installed on Linux |
Показывать по
Возможность эксплуатации
Publicly Disclosed
Exploited
Latest Software Release
EPSS
6.2 Medium
CVSS3
Связанные уязвимости
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
Microsoft Security Advisory CVE-2026-45491 – .NET Tampering Vulnerability
Уязвимость метода TarFile.ExtractToDirectory программной платформы .NET, позволяющая нарушителю получить доступ на чтение и изменение данных
EPSS
6.2 Medium
CVSS3