Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-47300

Опубликовано: 14 июл. 2026
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

A flaw was found in ASP.NET Core. An authorized attacker can exploit an incorrect implementation of the authentication algorithm over a network. This vulnerability allows the attacker to elevate their privileges, potentially gaining unauthorized access to sensitive resources or performing actions beyond their intended permissions.

Дополнительная информация

Статус:

Important
Дефект:
CWE-303
https://bugzilla.redhat.com/show_bug.cgi?id=2500492ASP.NET Core: ASP.NET Core: Privilege Escalation via Incorrect Authentication Algorithm

EPSS

Процентиль: 42%
0.00527
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
16 дней назад

Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

CVSS3: 8.8
nvd
16 дней назад

Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

CVSS3: 8.8
msrc
17 дней назад

ASP.NET Core Elevation of Privilege Vulnerability

CVSS3: 8.8
redos
7 дней назад

Уязвимость dotnet10.0

CVSS3: 8.8
github
9 дней назад

Microsoft Security Advisory CVE-2026-47300 – .NET Elevation of Privilege Vulnerability

EPSS

Процентиль: 42%
0.00527
Низкий

8.8 High

CVSS3