Microsoft

.Net Framework

222 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 21.9%
  • Veröffentlicht 09.05.2012 00:55:01
  • Zuletzt bearbeitet 16.06.2026 23:36:48

Microsoft .NET Framework 4 does not properly allocate buffers, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET Framework application, aka ".NET Framework Buffer Alloc...

  • EPSS 17.19%
  • Veröffentlicht 09.05.2012 00:55:01
  • Zuletzt bearbeitet 16.06.2026 23:36:49

Microsoft .NET Framework 4 does not properly compare index values, which allows remote attackers to cause a denial of service (application hang) via crafted requests to a Windows Presentation Foundation (WPF) application, aka ".NET Framework Index Co...

  • EPSS 38.25%
  • Veröffentlicht 10.04.2012 21:55:01
  • Zuletzt bearbeitet 16.06.2026 23:36:49

Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly validate function parameters, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted AS...

  • EPSS 28.17%
  • Veröffentlicht 14.02.2012 22:55:01
  • Zuletzt bearbeitet 16.06.2026 23:36:29

Microsoft .NET Framework 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.1.10111, does not properly restrict access to memory associated with unmanaged objects, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser ...

  • EPSS 23.78%
  • Veröffentlicht 14.02.2012 22:55:01
  • Zuletzt bearbeitet 16.06.2026 23:36:29

Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not properly calculate the length of an unspecified buffer, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET applicati...

  • EPSS 13.24%
  • Veröffentlicht 12.10.2011 02:52:43
  • Zuletzt bearbeitet 16.06.2026 23:29:01

Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.0.60831, does not properly restrict inheritance, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP...

  • EPSS 20.21%
  • Veröffentlicht 10.08.2011 21:55:02
  • Zuletzt bearbeitet 16.06.2026 23:30:32

Microsoft .NET Framework 2.0 SP2, 3.5.1, and 4 does not properly validate the System.Net.Sockets trust level, which allows remote attackers to obtain sensitive information or trigger arbitrary outbound network traffic via (1) a crafted XAML browser a...

  • EPSS 21.37%
  • Veröffentlicht 10.08.2011 21:55:01
  • Zuletzt bearbeitet 16.06.2026 23:30:32

The ASP.NET Chart controls in Microsoft .NET Framework 4, and Chart Control for Microsoft .NET Framework 3.5 SP1, do not properly verify functions in URIs, which allows remote attackers to read arbitrary files via special characters in a URI in an HT...

  • EPSS 16.01%
  • Veröffentlicht 16.06.2011 20:55:01
  • Zuletzt bearbeitet 16.06.2026 23:27:50

Microsoft .NET Framework 2.0 SP1 and SP2, 3.5 Gold and SP1, 3.5.1, and 4.0, and Silverlight 4 before 4.0.60531.0, does not properly validate arguments to unspecified networking API functions, which allows remote attackers to execute arbitrary code vi...

Exploit
  • EPSS 20.1%
  • Veröffentlicht 10.05.2011 19:55:02
  • Zuletzt bearbeitet 16.06.2026 23:29:03

The JIT compiler in Microsoft .NET Framework 3.5 Gold and SP1, 3.5.1, and 4.0, when IsJITOptimizerDisabled is false, does not properly handle expressions related to null strings, which allows context-dependent attackers to bypass intended access rest...