Описание
.NET Tampering Vulnerability
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| .NET 8.0 installed on Windows | ||
| .NET 8.0 installed on Linux | ||
| .NET 8.0 installed on Mac OS | ||
| .NET 9.0 installed on Linux | ||
| .NET 9.0 installed on Mac OS | ||
| .NET 9.0 installed on Windows | ||
| Microsoft Visual Studio 2022 version 17.12 | ||
| Microsoft Visual Studio 2022 version 17.14 | ||
| .NET 10.0 installed on Mac OS | ||
| .NET 10.0 installed on Linux |
Показывать по
Возможность эксплуатации
Publicly Disclosed
Exploited
Latest Software Release
EPSS
7 High
CVSS3
Связанные уязвимости
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.
Microsoft Security Advisory CVE-2026-50526 – .NET Tampering Vulnerability
Уязвимость программной платформы Microsoft .NET и редактора исходного кода Visual Studio Code, связанная с ошибками обработки символических ссылок, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
EPSS
7 High
CVSS3