Microsoft Visual Studio 2022 Version 17.2 vulnerabilities

55 known vulnerabilities affecting microsoft/microsoft_visual_studio_2022_version_17.2.

Total CVEs
55
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL1HIGH43MEDIUM11

Vulnerabilities

Page 1 of 3
CVE-2024-0057CRITICALCVSS 9.1≥ 17.2.0, < 17.2.232024-01-09
CVE-2024-0057 [CRITICAL] CWE-20 CVE-2024-0057: NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2024-20656HIGHCVSS 7.8≥ 17.2.0, < 17.2.232024-01-09
CVE-2024-20656 [HIGH] CWE-59 CVE-2024-20656: Visual Studio Elevation of Privilege Vulnerability Visual Studio Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-0056HIGHCVSS 8.7≥ 17.2.0, < 17.2.232024-01-09
CVE-2024-0056 [HIGH] CWE-319 CVE-2024-0056: Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnera Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2024-21319MEDIUMCVSS 6.8≥ 17.2.0, < 17.2.232024-01-09
CVE-2024-21319 [MEDIUM] CWE-20 Microsoft Identity Denial of service vulnerability Microsoft Identity Denial of service vulnerability Microsoft Identity Denial of service vulnerability
cvelistv5
CVE-2023-36049HIGHCVSS 7.6≥ 17.2.0, < 17.2.222023-11-14
CVE-2023-36049 [HIGH] CWE-20 CVE-2023-36049: .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2023-36038HIGHCVSS 8.2≥ 17.2.0, < 17.2.222023-11-14
CVE-2023-36038 [HIGH] CWE-400 ASP.NET Core Denial of Service Vulnerability ASP.NET Core Denial of Service Vulnerability ASP.NET Core Denial of Service Vulnerability
cvelistv5
CVE-2023-36558MEDIUMCVSS 6.2≥ 17.2.0, < 17.2.222023-11-14
CVE-2023-36558 [MEDIUM] CVE-2023-36558: ASP.NET Core Security Feature Bypass Vulnerability ASP.NET Core Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2023-38171HIGHCVSS 7.5≥ 17.2.0, < 17.2.212023-10-10
CVE-2023-38171 [HIGH] CWE-476 Microsoft QUIC Denial of Service Vulnerability Microsoft QUIC Denial of Service Vulnerability Microsoft QUIC Denial of Service Vulnerability
cvelistv5
CVE-2023-36796HIGHCVSS 7.8≥ 17.2.0, < 17.2.212023-09-12
CVE-2023-36796 [HIGH] CWE-191 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36792HIGHCVSS 7.8≥ 17.2.0, < 17.2.212023-09-12
CVE-2023-36792 [HIGH] CWE-190 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36793HIGHCVSS 7.8≥ 17.2.0, < 17.2.212023-09-12
CVE-2023-36793 [HIGH] CWE-122 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36794HIGHCVSS 7.8≥ 17.2.0, < 17.2.212023-09-12
CVE-2023-36794 [HIGH] CWE-191 Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability Visual Studio Remote Code Execution Vulnerability
cvelistv5
CVE-2023-36799MEDIUMCVSS 6.5≥ 17.2.0, < 17.2.212023-09-12
CVE-2023-36799 [MEDIUM] CWE-400 CVE-2023-36799: .NET Core and Visual Studio Denial of Service Vulnerability .NET Core and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2023-36759MEDIUMCVSS 6.7≥ 17.2.0, < 17.2.192023-09-12
CVE-2023-36759 [MEDIUM] CWE-822 CVE-2023-36759: Visual Studio Elevation of Privilege Vulnerability Visual Studio Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2023-38178HIGHCVSS 7.5≥ 17.2.0, < 17.2.182023-08-08
CVE-2023-38178 [HIGH] CWE-400 CVE-2023-38178: .NET Core and Visual Studio Denial of Service Vulnerability .NET Core and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2023-36897HIGHCVSS 8.1≥ 17.2.0, < 17.2.182023-08-08
CVE-2023-36897 [HIGH] CWE-20 CVE-2023-36897: Visual Studio Tools for Office Runtime Spoofing Vulnerability Visual Studio Tools for Office Runtime Spoofing Vulnerability
cvelistv5nvd
CVE-2023-38180HIGHCVSS 7.5KEV≥ 17.2.0, < 17.2.182023-08-08
CVE-2023-38180 [HIGH] CWE-400 CVE-2023-38180: .NET and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2023-35390HIGHCVSS 7.8≥ 17.2.0, < 17.2.182023-08-08
CVE-2023-35390 [HIGH] CWE-77 CVE-2023-35390: .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-35391MEDIUMCVSS 6.2≥ 17.2.0, < 17.2.182023-08-08
CVE-2023-35391 [MEDIUM] CVE-2023-35391: ASP.NET Core SignalR and Visual Studio Information Disclosure Vulnerability ASP.NET Core SignalR and Visual Studio Information Disclosure Vulnerability
cvelistv5nvd
CVE-2023-33170HIGHCVSS 8.1≥ 17.2.0, < 17.2.172023-07-11
CVE-2023-33170 [HIGH] CWE-362 CVE-2023-33170: ASP.NET and Visual Studio Security Feature Bypass Vulnerability ASP.NET and Visual Studio Security Feature Bypass Vulnerability
cvelistv5nvd