Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-50659

Опубликовано: 14 июл. 2026
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

A flaw was found in .NET. An authorized attacker can exploit this vulnerability by leveraging improper encoding or escaping of output. This allows the attacker to perform spoofing over a network, potentially deceiving users or systems into believing they are interacting with a trusted entity.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenShift Dev Spacesdevspaces/udi-rhel9Not affected
Red Hat Enterprise Linux 10dotnet8.0FixedRHSA-2026:4189320.07.2026
Red Hat Enterprise Linux 10dotnet9.0FixedRHSA-2026:4189520.07.2026
Red Hat Enterprise Linux 10dotnet10.0FixedRHSA-2026:4189720.07.2026
Red Hat Enterprise Linux 10.0 Extended Update Supportdotnet8.0FixedRHSA-2026:5856624.08.2026
Red Hat Enterprise Linux 10.0 Extended Update Supportdotnet9.0FixedRHSA-2026:5856724.08.2026
Red Hat Enterprise Linux 8dotnet9.0FixedRHSA-2026:4189920.07.2026
Red Hat Enterprise Linux 8dotnet10.0FixedRHSA-2026:4190020.07.2026
Red Hat Enterprise Linux 8dotnet8.0FixedRHSA-2026:4190120.07.2026
Red Hat Enterprise Linux 9dotnet8.0FixedRHSA-2026:4189420.07.2026

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-838
https://bugzilla.redhat.com/show_bug.cgi?id=2500589.NET: .NET: Network Spoofing Vulnerability

EPSS

Процентиль: 44%
0.0055
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
2 месяца назад

Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

CVSS3: 6.5
nvd
2 месяца назад

Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

CVSS3: 6.5
msrc
2 месяца назад

.NET Spoofing Vulnerability

CVSS3: 6.5
github
около 2 месяцев назад

Microsoft Security Advisory CVE-2026-50659 – .NET Spoofing Vulnerability

CVSS3: 6.5
fstec
2 месяца назад

Уязвимость программной платформы Microsoft .NET, связанная с неправильным кодированием или экранированием выходных данных, позволяющая нарушителю осуществить SSRF-атаку

EPSS

Процентиль: 44%
0.0055
Низкий

6.5 Medium

CVSS3