Msrc Asp.Net Core 7.0 vulnerabilities
3 known vulnerabilities affecting msrc/asp.net_core_7.0.
Total CVEs
3
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2024-21386HIGHCVSS 7.52024-02-13
CVE-2024-21386 [HIGH] CWE-400 .NET Denial of Service Vulnerability
.NET Denial of Service Vulnerability
.NET: .NET
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Denial of Service
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;DOS:N/A
Remediation: Release Notes
Reference: https://dotnet.microsoft.com/download/dotnet/6.0
Reference: https://github.com/dotnet/announcements/issues/295
Reference: https://dotnet.microsoft.com/do
msrc
CVE-2023-36558MEDIUMCVSS 6.22023-11-14
CVE-2023-36558 [MEDIUM] ASP.NET Core Security Feature Bypass Vulnerability
ASP.NET Core Security Feature Bypass Vulnerability
FAQ: What kind of security feature could be bypassed by successfully exploiting this vulnerability?
An unauthenticated attacker could bypass validations on Blazor Server forms.
FAQ: How could an attacker exploit this vulnerability?
To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then trigger an event that could expl
msrc
CVE-2023-44487HIGHCVSS 7.5KEVPoC2023-10-10
CVE-2023-44487 [HIGH] CWE-400 MITRE: CVE-2023-44487 HTTP/2 Rapid Reset Attack
MITRE: CVE-2023-44487 HTTP/2 Rapid Reset Attack
HTTP/2: HTTP/2
MITRE Corporation: MITRE Corporation
Customer Action Required: Yes
Impact: Denial of Service
Exploit Status: Publicly Disclosed:No;Exploited:Yes;Latest Software Release:Exploitation Detected;DOS:N/A
Reference: https://dotnet.microsoft.com/download/dotnet/6.0
Reference: https://support.microsoft.com/help/5032874
Remediation: Release Notes
Reference:
msrc