cbcvebase.
CVE-2011-1977
published 2011-08-10

CVE-2011-1977: The ASP.NET Chart controls in Microsoft .NET Framework 4, and Chart Control for Microsoft .NET Framework 3.5 SP1, do not properly verify functions in URIs…

PriorityP434medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
21.37%
97.3th percentile
The ASP.NET Chart controls in Microsoft .NET Framework 4, and Chart Control for Microsoft .NET Framework 3.5 SP1, do not properly verify functions in URIs, which allows remote attackers to read arbitrary files via special characters in a URI in an HTTP request, aka "Chart Control Information Disclosure Vulnerability."

Affected

2 ranges
VendorProductVersion rangeFixed in
microsoftchart_control_for_microsoft_net_framework
microsoftnet_framework
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.