Microsoft

.Net

120 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.39%
  • Veröffentlicht 09.06.2026 17:17:25
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.

Medienbericht
  • EPSS 2.43%
  • Veröffentlicht 12.05.2026 16:59:06
  • Zuletzt bearbeitet 15.07.2026 02:21:38

Loop with unreachable exit condition ('infinite loop') in ASP.NET Core allows an unauthorized attacker to deny service over a network.

Medienbericht
  • EPSS 0.66%
  • Veröffentlicht 12.05.2026 16:58:34
  • Zuletzt bearbeitet 15.07.2026 02:20:42

Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.55%
  • Veröffentlicht 12.05.2026 16:58:15
  • Zuletzt bearbeitet 15.07.2026 02:19:53

Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 1.9%
  • Veröffentlicht 14.04.2026 16:58:38
  • Zuletzt bearbeitet 15.07.2026 02:19:53

Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.

Medienbericht
  • EPSS 1.75%
  • Veröffentlicht 14.04.2026 16:58:37
  • Zuletzt bearbeitet 15.07.2026 02:19:00

Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

Medienbericht
  • EPSS 2.14%
  • Veröffentlicht 14.04.2026 16:57:47
  • Zuletzt bearbeitet 25.07.2026 11:10:00

Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network.

Medienbericht
  • EPSS 2.28%
  • Veröffentlicht 14.04.2026 16:57:31
  • Zuletzt bearbeitet 15.07.2026 02:19:53

Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.

Exploit
  • EPSS 3%
  • Veröffentlicht 19.03.2026 00:00:00
  • Zuletzt bearbeitet 22.04.2026 17:16:34

ASP.NET Core Kestrel in Microsoft .NET 8.0 before 8.0.22 and .NET 9.0 before 9.0.11 allows a remote attacker to cause excessive CPU consumption by sending a crafted QUIC packet, because of an incorrect exit condition for HTTP/3 Encoder/Decoder stream...

Medienbericht
  • EPSS 2.05%
  • Veröffentlicht 10.03.2026 17:05:10
  • Zuletzt bearbeitet 01.04.2026 20:22:46

Out-of-bounds read in .NET allows an unauthorized attacker to deny service over a network.