CVE-2017-8700
published 2017-11-15CVE-2017-8700: ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a…
PriorityP344high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
EPSS
10.48%
95.2th percentile
ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a web application, aka "ASP.NET Core Information Disclosure Vulnerability".
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | asp.net_core | — | — |
| microsoft | asp.net_core | — | — |
| microsoft | asp.net_core | — | — |
| microsoft | microsoft.aspnetcore.mvc.cors | >= 1.0.0 < 1.0.6 | 1.0.6 |
| microsoft | microsoft.aspnetcore.mvc.cors | >= 1.1.0 < 1.1.6 | 1.1.6 |
| microsoft_corporation | asp.net_core | — | — |
| msrc | asp.net_core_1.0 | — | — |
| msrc | asp.net_core_1.1 | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_msrc7.5MEDIUM
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Cross-origin Resource Sharing bypass in ASP.NET Core
osv·2022-05-13
CVE-2017-8700 [HIGH] Cross-origin Resource Sharing bypass in ASP.NET Core
Cross-origin Resource Sharing bypass in ASP.NET Core
ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a web application, aka "ASP.NET Core Information Disclosure Vulnerability".
GHSA
Cross-origin Resource Sharing bypass in ASP.NET Core
ghsa·2022-05-13
CVE-2017-8700 [HIGH] Cross-origin Resource Sharing bypass in ASP.NET Core
Cross-origin Resource Sharing bypass in ASP.NET Core
ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a web application, aka "ASP.NET Core Information Disclosure Vulnerability".
Red Hat
ASP.NET: CORS not properly applied
vendor_redhat·2017-11-14·CVSS 7.5
CVE-2017-8700 [HIGH] ASP.NET: CORS not properly applied
ASP.NET: CORS not properly applied
ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a web application, aka "ASP.NET Core Information Disclosure Vulnerability".
A flaw was found in dotNET where the CORS attribute is not properly enforced or checked. An attacker could leverage this for possible remote execution.
Package: rh-dotnetcore10-dotnetcore (.NET Core 1.0 on Red Hat Enterprise Linux) - Not affected
Package: rh-dotnetcore11-dotnetcore (.NET Core 1.1 on Red Hat Enterprise Linux) - Not affected
Package: rh-dotnet20-dotnet (.NET Core 2.0 on Red Hat Enterprise Linux) - Not affected
Microsoft
ASP.NET Core Information Disclosure Vulnerability
vendor_msrc·2017-11-14·CVSS 7.5
CVE-2017-8700 [HIGH] ASP.NET Core Information Disclosure Vulnerability
ASP.NET Core Information Disclosure Vulnerability
Description: An information disclosure vulnerability exists in ASP.NET Core that allows bypassing Cross-origin Resource Sharing (CORS) configurations.
An attacker who successfully exploited the vulnerability could retrieve content, that is normally restricted, from a web application.
The security update addresses the vulnerability by enforcing CORS configuration to prevent its bypass.
ASP .NET: ASP .NET
Impact: Information Disclosure
Exploit Status: Publicly Disclosed:Yes;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely
Remediation: Commit
Reference: https://github.com/aspnet/announcements/issues/279
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-8700 ASP.NET: CORS not properly applied
bugzilla·2017-11-14·CVSS 7.5
CVE-2017-8700 [HIGH] CVE-2017-8700 ASP.NET: CORS not properly applied
CVE-2017-8700 ASP.NET: CORS not properly applied
CVE-2017-8700 was assigned to the following vulnerability:
ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a web application, aka "ASP.NET Core Information Disclosure Vulnerability".
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2017-8700
Discussion:
This issue did not affected .NET Core, but affected ASP.NET Core. More details can be found in the upstream Microsoft advisories:
https://github.com/aspnet/Announcements/issues/279
https://github.com/aspnet/Mvc/issues/7054
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8700
---
External References:
https://github.com/aspnet/Announcem
Bugzilla
CVE-2016-8685 CVE-2016-8686 CVE-2016-8694 CVE-2016-8695 CVE-2016-8696 CVE-2016-8697 CVE-2016-8698 CVE-2016-8699 CVE-2016-8700 CVE-2016-8701 CVE-2016-8702 CVE-2016-8703 CVE-2017-7263 potrace: Multiple
bugzilla·2016-10-17·CVSS 5.5
CVE-2016-8685 [MEDIUM] CVE-2016-8685 CVE-2016-8686 CVE-2016-8694 CVE-2016-8695 CVE-2016-8696 CVE-2016-8697 CVE-2016-8698 CVE-2016-8699 CVE-2016-8700 CVE-2016-8701 CVE-2016-8702 CVE-2016-8703 CVE-2017-7263 potrace: Multiple
CVE-2016-8685 CVE-2016-8686 CVE-2016-8694 CVE-2016-8695 CVE-2016-8696 CVE-2016-8697 CVE-2016-8698 CVE-2016-8699 CVE-2016-8700 CVE-2016-8701 CVE-2016-8702 CVE-2016-8703 CVE-2017-7263 potrace: Multiple security issues
Multiple issues in potrace were assigned CVEs on oss-security.
References:
http://seclists.org/oss-sec/2016/q4/153
https://blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/
AddressSanitizer: SEGV on unknown address 0x4f027b in bm_readbody_bmp /var/tmp/portage/media-gfx/potrace-1.12/work/potrace-1.12/src/bitmap_io.c:717:4
Use CVE-2016-8694.
AddressSanitizer: SEGV on unknown address 0x4f0957 in bm_readbody_bmp /var/tmp/portage/media-gfx/potrace-1.12/work/potrace-1.12/src/bitmap_io.c:744:4
Use CVE-2016-8695.
Qualys
November Patch Tuesday: 53 Vulnerabilities and a Massive Adobe Update
blogs_qualys·2017-11-14·CVSS 7.5
[HIGH] November Patch Tuesday: 53 Vulnerabilities and a Massive Adobe Update
This November Patch Tuesday is moderate in volume and severity. Microsoft released patches to address 53 unique vulnerabilities, with 25 focused on Remote Code Execution fixes. Windows OS receives 14 patches, while the lion’s share is focused on Browsers, Microsoft Office, and Adobe. According to Microsoft, there do not appear to be any actively attacked vulnerabilities in the wild in this patch release.
Interestingly enough, none of the Windows OS patches are listed as Critical this month, but we do recommend focusing on CVE-2017-11830 and CVE-2017-11847 , as they address a Security Feature Bypass, and a Privilege Elevation respectively.
It should also be noted that CVE-2017-11848 , CVE-2017-11827 , CVE-2017-11883 , CVE-2017-8700 have public exploits, but they do not appear to be used i
Talos
Microsoft Patch Tuesday - November 2017
blogs_talos·2017-11-14·CVSS 7.5
CVE-2017-16367 [HIGH] Microsoft Patch Tuesday - November 2017
Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 53 new vulnerabilities with 19 of them rated critical, 31 of them rated important and 3 of them rated moderate. These vulnerabilities impact Microsoft Edge, Internet Explorer, Microsoft Scripting Engine, and more.
In addition, an update for Adobe Reader was released which addresses CVE-2017-16367 / TALOS-2017-0356 - Adobe Acrobat Reader DC PDF Structured Hierarchy ActualText Structure Element Code Execution Vulnerability which was discovered by Aleksandar Nikolic of Cisco Talos. This vulnerability manifests as a type confusion vulnerability in the PDF parsing functionality for documents containing marked stru
Qualys
November Patch Tuesday: 53 Vulnerabilities and a Massive Adobe Update | Qualys
blogs_qualys·2017-11-14·CVSS 7.5
[HIGH] November Patch Tuesday: 53 Vulnerabilities and a Massive Adobe Update | Qualys
This November Patch Tuesday is moderate in volume and severity. Microsoft released patches to address 53 unique vulnerabilities, with 25 focused on Remote Code Execution fixes. Windows OS receives 14 patches, while the lion’s share is focused on Browsers, Microsoft Office, and Adobe. According to Microsoft, there do not appear to be any actively attacked vulnerabilities in the wild in this patch release.
Interestingly enough, none of the Windows OS patches are listed as Critical this month, but we do recommend focusing on CVE-2017-11830 and CVE-2017-11847, as they address a Security Feature Bypass, and a Privilege Elevation respectively.
It should also be noted that CVE-2017-11848, CVE-2017-11827, CVE-2017-11883, CVE-2017-8700 have public exploits, but they do not appear to be used in an
http://www.securityfocus.com/bid/101712http://www.securitytracker.com/id/1039793https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8700http://www.securityfocus.com/bid/101712http://www.securitytracker.com/id/1039793https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8700
2017-11-15
Published