← Back

CVE-2020-0603

nvd nist
Published: Jan 14, 2020Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

A remote code execution vulnerability exists in ASP.NET Core software when the software fails to handle objects in memory.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka 'ASP.NET Core Remote Code Execution Vulnerability'.

Affected (5)

1 product
Asp.net Core
2 products
Enterprise Linux
Enterprise Linux Eus
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2.1
Version 3.0
Version 3.1
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Version 8.1

References (6)

Source: secure@microsoft.com
Third Party Advisory
Source: secure@microsoft.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.