CVE-2016-0047Sensitive Information Exposure in Microsoft NET Framework

Severity
7.5HIGHNVD
EPSS
21.0%
top 4.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 10
Latest updateMay 14

Description

WinForms in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 allows remote attackers to obtain sensitive information from process memory via crafted icon data, aka "Windows Forms Information Disclosure Vulnerability."

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDmicrosoft/net_framework6 versions+5

🔴Vulnerability Details

2
GHSA
GHSA-3vf2-6fxh-3q3m: WinForms in Microsoft2022-05-14
CVEList
CVE-2016-0047: WinForms in Microsoft2016-02-10
CVE-2016-0047 — Sensitive Information Exposure | cvebase