Microsoft .Net Framework 3.5 vulnerabilities

40 known vulnerabilities affecting microsoft/microsoft_.net_framework_3.5.

Total CVEs
40
CISA KEV
3
actively exploited
Public exploits
3
Exploited in wild
2
Severity breakdown
CRITICAL1HIGH32MEDIUM7

Vulnerabilities

Page 1 of 2
CVE-2025-55248MEDIUMCVSS 4.8≥ 3.5.0, < 2.0.50727.89812025-10-14
CVE-2025-55248 [MEDIUM] CWE-326 CVE-2025-55248: Inadequate encryption strength in .NET, .NET Framework, Visual Studio allows an authorized attacker Inadequate encryption strength in .NET, .NET Framework, Visual Studio allows an authorized attacker to disclose information over a network.
cvelistv5nvd
CVE-2024-43484HIGHCVSS 7.5≥ 3.5.0, < 3.5.30729.89732024-10-08
CVE-2024-43484 [HIGH] CWE-407 CVE-2024-43484: .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2024-43483HIGHCVSS 7.5≥ 3.5.0, < 3.5.30729.89732024-10-08
CVE-2024-43483 [HIGH] CWE-407 CVE-2024-43483: .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2024-38081HIGHCVSS 7.3≥ 3.5.0, < 3.5.30729.89722024-07-09
CVE-2024-38081 [HIGH] CWE-59 .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
cvelistv5
CVE-2024-29059HIGHCVSS 7.5KEVPoC≥ 3.5.0, < 3.0.50727.89762024-03-23
CVE-2024-29059 [HIGH] CWE-209 CVE-2024-29059: .NET Framework Information Disclosure Vulnerability .NET Framework Information Disclosure Vulnerability
cvelistv5nvd
CVE-2024-21312HIGHCVSS 7.5≥ 3.5.0, < 3.0.50727.89762024-01-09
CVE-2024-21312 [HIGH] CWE-20 .NET Framework Denial of Service Vulnerability .NET Framework Denial of Service Vulnerability .NET Framework Denial of Service Vulnerability
cvelistv5
CVE-2023-36049HIGHCVSS 7.6≥ 3.5.0, < 3.0.50727.89752023-11-14
CVE-2023-36049 [HIGH] CWE-20 CVE-2023-36049: .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2023-36560HIGHCVSS 8.8≥ 3.5.0, < 3.0.50727.89752023-11-14
CVE-2023-36560 [HIGH] ASP.NET Security Feature Bypass Vulnerability ASP.NET Security Feature Bypass Vulnerability ASP.NET Security Feature Bypass Vulnerability
cvelistv5
CVE-2023-36796HIGHCVSS 7.8≥ 3.5.0, < 3.0.30729.89572023-09-12
CVE-2023-36796 [HIGH] CWE-191 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36792HIGHCVSS 7.8≥ 3.5.0, < 3.0.30729.89572023-09-12
CVE-2023-36792 [HIGH] CWE-190 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36793HIGHCVSS 7.8≥ 3.5.0, < 3.0.30729.89572023-09-12
CVE-2023-36793 [HIGH] CWE-122 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36788HIGHCVSS 7.8≥ 3.5.0, < 3.0.30729.89572023-09-12
CVE-2023-36788 [HIGH] CVE-2023-36788: .NET Framework Remote Code Execution Vulnerability .NET Framework Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-36794HIGHCVSS 7.8≥ 3.5.0, < 3.0.30729.89572023-09-12
CVE-2023-36794 [HIGH] CWE-191 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-24936HIGHCVSS 7.5≥ 3.5.0, < 3.0.6920.8954; 2.0.50727.89702023-06-14
CVE-2023-24936 [HIGH] CVE-2023-24936: .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2023-24895HIGHCVSS 7.8≥ 3.5.0, < 3.0.6920.8954; 2.0.50727.89702023-06-14
CVE-2023-24895 [HIGH] CVE-2023-24895: .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-29331HIGHCVSS 7.5≥ 3.5.0, < 3.0.6920.8954; 2.0.50727.89702023-06-14
CVE-2023-29331 [HIGH] CWE-400 CVE-2023-29331: .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2023-29326HIGHCVSS 7.8≥ 3.5.0, < 3.0.6920.8954; 2.0.50727.89702023-06-14
CVE-2023-29326 [HIGH] CVE-2023-29326: .NET Framework Remote Code Execution Vulnerability .NET Framework Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-32030HIGHCVSS 7.5≥ 3.5.0, < 3.0.6920.8954; 2.0.50727.89702023-06-14
CVE-2023-32030 [HIGH] CVE-2023-32030: .NET and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2023-21722MEDIUMCVSS 5.0≥ 3.5.0, < 3.5.50727.89662023-02-14
CVE-2023-21722 [MEDIUM] CWE-59 .NET Framework Denial of Service Vulnerability .NET Framework Denial of Service Vulnerability .NET Framework Denial of Service Vulnerability
cvelistv5
CVE-2022-41089HIGHCVSS 7.8≥ 3.5.0, < 30729.89532022-12-13
CVE-2022-41089 [HIGH] CVE-2022-41089: .NET Framework Remote Code Execution Vulnerability .NET Framework Remote Code Execution Vulnerability
cvelistv5nvd