Логотип exploitDog
bind:CVE-2016-7270
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-7270

Количество 3

Количество 3

nvd логотип

CVE-2016-7270

больше 8 лет назад

The Data Provider for SQL Server in Microsoft .NET Framework 4.6.2 mishandles a developer-supplied key, which allows remote attackers to bypass the Always Encrypted protection mechanism and obtain sensitive cleartext information by leveraging key guessability, aka ".NET Information Disclosure Vulnerability."

CVSS3: 7.5
EPSS: Средний
msrc логотип

CVE-2016-7270

больше 8 лет назад

.NET Framework Information Disclosure Vulnerability

EPSS: Средний
github логотип

GHSA-8gpg-cpw5-pw9g

около 3 лет назад

The Data Provider for SQL Server in Microsoft .NET Framework 4.6.2 mishandles a developer-supplied key, which allows remote attackers to bypass the Always Encrypted protection mechanism and obtain sensitive cleartext information by leveraging key guessability, aka ".NET Information Disclosure Vulnerability."

CVSS3: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-7270

The Data Provider for SQL Server in Microsoft .NET Framework 4.6.2 mishandles a developer-supplied key, which allows remote attackers to bypass the Always Encrypted protection mechanism and obtain sensitive cleartext information by leveraging key guessability, aka ".NET Information Disclosure Vulnerability."

CVSS3: 7.5
37%
Средний
больше 8 лет назад
msrc логотип
CVE-2016-7270

.NET Framework Information Disclosure Vulnerability

37%
Средний
больше 8 лет назад
github логотип
GHSA-8gpg-cpw5-pw9g

The Data Provider for SQL Server in Microsoft .NET Framework 4.6.2 mishandles a developer-supplied key, which allows remote attackers to bypass the Always Encrypted protection mechanism and obtain sensitive cleartext information by leveraging key guessability, aka ".NET Information Disclosure Vulnerability."

CVSS3: 7.5
37%
Средний
около 3 лет назад

Уязвимостей на страницу