6.5

CVE-2019-0757

A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify a NuGet package's folder structure, aka 'NuGet Package Manager Tampering Vulnerability'.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftVisual Studio 2017 Version-
   ApplemacOS Version-
MicrosoftNuget Version4.3.1
MicrosoftNuget Version4.4.2
MicrosoftNuget Version4.5.2
MicrosoftNuget Version4.6.3
MicrosoftNuget Version4.7.2
MicrosoftNuget Version4.8.2
MicrosoftNuget Version4.9.4
Mono-projectMono Framework Version5.18.0.223
Mono-projectMono Framework Version5.20.0
Microsoft.Net Core Sdk Version1.1
   Microsoft.Net Core Version1.0
   Microsoft.Net Core Version1.1
Microsoft.Net Core Sdk Version2.1.500
   Microsoft.Net Core Version2.1
Microsoft.Net Core Sdk Version2.2.100
   Microsoft.Net Core Version2.2
RedhatEnterprise Linux Version8.0
RedhatEnterprise Linux Eus Version8.1
RedhatEnterprise Linux Eus Version8.2
RedhatEnterprise Linux Eus Version8.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 8.05% 0.918
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:P/A:N