Description
ASP.NET Elevation of Privilege Vulnerability
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
E
Physical
RL
O
RC
Changed
Affected products
- Microsoft / Microsoft .NET Framework 2.0 Service Pack 22.0.0 β 2.0.50727.8974
- Microsoft / Microsoft .NET Framework 3.5 and 4.6.24.7.0 β 10.0.10240.20107
- Microsoft / Microsoft .NET Framework 3.5 AND 4.6.2/4.7/4.7.1/4.7.23.0.0.0 β 10.0.14393.6167
- Microsoft / Microsoft .NET Framework 3.5 AND 4.7.24.7.0 β 4.7.4057.05
- Microsoft / Microsoft .NET Framework 3.5 AND 4.84.8.0 β 4.8.04654.06
- Microsoft / Microsoft .NET Framework 3.5 AND 4.8.14.8.1 β 4.8.09176.01
- Microsoft / Microsoft .NET Framework 4.6.24.7.0 β 4.7.04057.05
- Microsoft / Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.24.7.0 β 4.7.04057.05
- Microsoft / Microsoft .NET Framework 4.84.8.0 β 4.8.4654.06