Microsoft

Asp.Net Core

37 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 22.23%
  • Veröffentlicht 14.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:39:08

.NET Core 1.0, .NET Core 1.1, NET Core 2.0 and PowerShell Core 6.0.0 allow a denial of Service vulnerability due to how specially crafted requests are handled, aka ".NET Core Denial of Service Vulnerability".

  • EPSS 12.84%
  • Veröffentlicht 14.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:38:59

ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to how ASP.NET web applications handle web requests, aka "ASP.NET Core Elevation Of Privilege Vulnerability". This CVE is unique from CVE-2018-0784.

  • EPSS 17.48%
  • Veröffentlicht 14.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:38:56

ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to how web applications that are created from templates validate web requests, aka "ASP.NET Core Elevation Of Privilege Vulnerability".

  • EPSS 2.59%
  • Veröffentlicht 10.01.2018 01:29:00
  • Zuletzt bearbeitet 21.11.2024 03:38:56

ASP.NET Core 1.0. 1.1, and 2.0 allow a cross site request forgery vulnerability due to the ASP.NET Core project templates, aka "ASP.NET Core Cross Site Request Forgery Vulnerability".

  • EPSS 15.81%
  • Veröffentlicht 10.01.2018 01:29:00
  • Zuletzt bearbeitet 21.11.2024 03:38:56

ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to the ASP.NET Core project templates, aka "ASP.NET Core Elevation Of Privilege Vulnerability". This CVE is unique from CVE-2018-0808.

  • EPSS 26.62%
  • Veröffentlicht 15.11.2017 03:29:02
  • Zuletzt bearbeitet 20.04.2025 01:37:25

ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a web application, aka "ASP.NET Core Information Disclosure Vulnerability".

  • EPSS 7.57%
  • Veröffentlicht 15.11.2017 03:29:01
  • Zuletzt bearbeitet 20.04.2025 01:37:25

ASP.NET Core 2.0 allows an attacker to steal log-in session information such as cookies or authentication tokens via a specially crafted URL aka "ASP.NET Core Elevation Of Privilege Vulnerability".