cbcvebase.
CVE-2023-33170
published 2023-07-11

CVE-2023-33170: ASP.NET and Visual Studio Security Feature Bypass Vulnerability

PriorityP349high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
EPSS
1.98%
78.3th percentile
ASP.NET and Visual Studio Security Feature Bypass Vulnerability

Affected

45 ranges· showing 25
VendorProductVersion rangeFixed in
fedoraprojectfedora
fedoraprojectfedora
microsoftmicrosoft.aspnetcore.app.runtime.linux-arm>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.linux-arm>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.linux-arm64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.linux-arm64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.linux-musl-arm>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.linux-musl-arm>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.linux-musl-arm64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.linux-musl-arm64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.linux-musl-x64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.linux-musl-x64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.linux-x64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.linux-x64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.osx-arm64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.osx-arm64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.osx-x64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.osx-x64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.win-arm>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.win-arm>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.win-arm64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.win-arm64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.win-x64>= 0 < 6.0.206.0.20
microsoftmicrosoft.aspnetcore.app.runtime.win-x64>= 7.0.0 < 7.0.97.0.9
microsoftmicrosoft.aspnetcore.app.runtime.win-x86>= 0 < 6.0.206.0.20

CVSS provenance

nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
ghsa8.1HIGH
osv8.1HIGH
vendor_msrc8.1HIGH
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.