Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
asp.net vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-4793
The update function in umbraco.webservices/templates/templateService.cs in the TemplateService component in Umbraco CMS prior to 6.0.4 does not require authentication, which allows remote malicious users to execute arbitrary ASP.NET code via a crafted SOAP request.
Umbraco Umbraco Cms
NA
CVE-2014-2217
Absolute path traversal vulnerability in the RadAsyncUpload control in the RadControls in Telerik UI for ASP.NET AJAX before Q3 2012 SP2 allows remote malicious users to write to arbitrary files, and consequently execute arbitrary code, via a full pathname in the UploadID metadat...
Telerik Ui For Asp.net Ajax
1 Github repository
NA
CVE-2014-4075
Cross-site scripting (XSS) vulnerability in System.Web.Mvc.dll in Microsoft ASP.NET Model View Controller (MVC) 2.0 up to and including 5.1 allows remote malicious users to inject arbitrary web script or HTML via a crafted web page, aka "MVC XSS Vulnerability."
Microsoft Asp.net Model View Controller 5.0
Microsoft Asp.net Model View Controller 5.1
Microsoft Asp.net Model View Controller 3.0
Microsoft Asp.net Model View Controller 4.0
Microsoft Asp.net Model View Controller 2.0
NA
CVE-2014-4958
Cross-site scripting (XSS) vulnerability in Telerik UI for ASP.NET AJAX RadEditor control 2014.1.403.35, 2009.3.1208.20, and other versions allows remote malicious users to inject arbitrary web script or HTML via CSS expressions in style attributes.
Telerik Asp.net Ajax Radeditor Control 2009.3.1208.20
Telerik Asp.net Ajax Radeditor Control
1 Article
NA
CVE-2014-4072
Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2 does not properly use a hash table for request data, which allows remote malicious users to cause a denial of service (resource consumption and ASP.NET performance degradation) via crafted re...
Microsoft .net Framework 2.0
Microsoft .net Framework 1.1
Microsoft .net Framework 4.5.1
Microsoft .net Framework 4.5.2
Microsoft .net Framework 4.0
Microsoft .net Framework 4.5
Microsoft .net Framework 3.0
Microsoft .net Framework 3.5
Microsoft .net Framework 3.5.1
NA
CVE-2014-2575
Directory traversal vulnerability in the File Manager component in DevExpress ASPxFileManager Control for ASP.NET WebForms and MVC prior to 13.1.10 and 13.2.x prior to 13.2.9 allows remote authenticated users to read or write arbitrary files via a .. (dot dot) in the __EVENTARGUM...
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.3
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.12
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.5
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.4
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.7
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.5
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.1.12
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.8
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.6
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.9
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.8
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.12
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.11
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.5
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.4
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.7
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.6
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.10
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.8
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.1.7
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.1.6
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.2.11
1 EDB exploit
NA
CVE-2014-0253
Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, and 4.5.1 does not properly determine TCP connection states, which allows remote malicious users to cause a denial of service (ASP.NET daemon hang) via crafted HTTP requests that trigger persistent resource consumptio...
Microsoft .net Framework 3.5
Microsoft .net Framework 3.5.1
Microsoft .net Framework 4.5.1
Microsoft .net Framework 4.0
Microsoft .net Framework 4.5
Microsoft .net Framework 2.0
Microsoft .net Framework 1.1
NA
CVE-2013-5042
Cross-site scripting (XSS) vulnerability in Microsoft ASP.NET SignalR 1.1.x prior to 1.1.4 and 2.0.x prior to 2.0.1, and Visual Studio Team Foundation Server 2013, allows remote malicious users to inject arbitrary web script or HTML via crafted Forever Frame transport protocol da...
Microsoft Asp.net Signalr 1.1.3
Microsoft Asp.net Signalr 1.1.0
Microsoft Asp.net Signalr 2.0.0
Microsoft Asp.net Signalr 1.1.2
Microsoft Asp.net Signalr 1.1.1
Microsoft Visual Studio Team Foundation Server 2013
NA
CVE-2013-3195
The DSA_InsertItem function in Comctl32.dll in the Windows common control library in Microsoft Windows XP SP2, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT does not properly allocate ...
Microsoft Windows Server 2008
Microsoft Windows Rt -
Microsoft Windows Xp -
Microsoft Windows 8 -
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Vista
Microsoft Windows Server 2012 -
1 Article
NA
CVE-2012-4592
The Portal in McAfee Enterprise Mobility Manager (EMM) prior to 10.0 does not set the secure flag for the ASP.NET session cookie in an https session, which makes it easier for remote malicious users to capture this cookie by intercepting its transmission within an http session.
Mcafee Enterprise Mobility Manager
Mcafee Enterprise Mobility Manager 4.7
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-52710
arbitrary
CVE-2024-5272
CVE-2024-2961
brute force
remote
CVE-2024-32944
CVE-2024-36241
CVE-2024-5274
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »