Search Results (303 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2012-1895 1 Microsoft 6 .net Framework, Windows 7, Windows Server 2003 and 3 more 2025-04-11 N/A
The reflection implementation in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5.1, and 4 does not properly enforce object permissions, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET Framework application, aka "Reflection Bypass Vulnerability."
CVE-2012-1896 1 Microsoft 6 .net Framework, Windows 7, Windows Server 2003 and 3 more 2025-04-11 N/A
Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not properly consider trust levels during construction of output data, which allows remote attackers to obtain sensitive information via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET Framework application, aka "Code Access Security Info Disclosure Vulnerability."
CVE-2012-2519 1 Microsoft 8 .net Framework, Windows 7, Windows 8 and 5 more 2025-04-11 N/A
Untrusted search path vulnerability in Entity Framework in ADO.NET in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, and 4 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .NET application, aka ".NET Framework Insecure Library Loading Vulnerability."
CVE-2012-4776 1 Microsoft 8 .net Framework, Windows 7, Windows 8 and 5 more 2025-04-11 N/A
The Web Proxy Auto-Discovery (WPAD) functionality in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not validate configuration data that is returned during acquisition of proxy settings, which allows remote attackers to execute arbitrary JavaScript code by providing crafted data during execution of (1) an XAML browser application (aka XBAP) or (2) a .NET Framework application, aka "Web Proxy Auto-Discovery Vulnerability."
CVE-2012-4777 1 Microsoft 9 .net Framework, Windows 7, Windows 8 and 6 more 2025-04-11 N/A
The code-optimization feature in the reflection implementation in Microsoft .NET Framework 4 and 4.5 does not properly enforce object permissions, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET Framework application, aka "WPF Reflection Optimization Vulnerability."
CVE-2013-0001 1 Microsoft 9 .net Framework, Windows 7, Windows 8 and 6 more 2025-04-11 N/A
The Windows Forms (aka WinForms) component in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 4, and 4.5 does not properly initialize memory arrays, which allows remote attackers to obtain sensitive information via (1) a crafted XAML browser application (XBAP) or (2) a crafted .NET Framework application that leverages a pointer to an unmanaged memory location, aka "System Drawing Information Disclosure Vulnerability."
CVE-2022-26929 1 Microsoft 12 .net, .net Framework, Windows 10 and 9 more 2025-03-11 7.8 High
.NET Framework Remote Code Execution Vulnerability
CVE-2022-41032 3 Fedoraproject, Microsoft, Redhat 7 Fedora, .net, .net Core and 4 more 2025-02-28 7.8 High
NuGet Client Elevation of Privilege Vulnerability
CVE-2023-29331 2 Microsoft, Redhat 17 .net, .net Framework, Windows 10 1507 and 14 more 2025-02-28 7.5 High
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
CVE-2022-30184 4 Apple, Fedoraproject, Microsoft and 1 more 9 Macos, Fedora, .net and 6 more 2025-02-28 5.5 Medium
.NET and Visual Studio Information Disclosure Vulnerability
CVE-2022-41064 1 Microsoft 13 .net, .net Framework, Nuget and 10 more 2025-01-02 5.8 Medium
.NET Framework Information Disclosure Vulnerability
CVE-2022-26832 1 Microsoft 12 .net, .net Framework, Windows 10 and 9 more 2025-01-02 7.5 High
.NET Framework Denial of Service Vulnerability
CVE-2022-21986 3 Fedoraproject, Microsoft, Redhat 6 Fedora, .net, Visual Studio 2019 and 3 more 2025-01-02 7.5 High
.NET Denial of Service Vulnerability
CVE-2022-21911 1 Microsoft 11 .net, .net Framework, Windows 10 and 8 more 2025-01-02 7.5 High
.NET Framework Denial of Service Vulnerability
CVE-2023-38178 1 Microsoft 2 .net, Visual Studio 2022 2025-01-01 7.5 High
.NET Core and Visual Studio Denial of Service Vulnerability
CVE-2023-36899 1 Microsoft 11 .net, .net Framework, Windows 10 1809 and 8 more 2025-01-01 8.8 High
ASP.NET Elevation of Privilege Vulnerability
CVE-2023-36873 1 Microsoft 13 .net, .net Framework, Windows 10 1607 and 10 more 2025-01-01 7.4 High
.NET Framework Spoofing Vulnerability
CVE-2023-33135 1 Microsoft 3 .net, Visual Studio, Visual Studio 2022 2025-01-01 7.3 High
.NET and Visual Studio Elevation of Privilege Vulnerability
CVE-2023-33128 2 Microsoft, Redhat 7 .net, Powershell, Visual Studio and 4 more 2025-01-01 7.3 High
.NET and Visual Studio Remote Code Execution Vulnerability
CVE-2023-33126 1 Microsoft 4 .net, Powershell, Visual Studio and 1 more 2025-01-01 7.3 High
.NET and Visual Studio Remote Code Execution Vulnerability