Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
microsoft asp.net vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2005-1665
The __VIEWSTATE functionality in Microsoft ASP.NET 1.x, when not cryptographically signed, allows remote malicious users to cause a denial of service (CPU consumption) via deeply nested markup.
Microsoft Asp.net 1.0
Microsoft Asp.net 1.1
NA
CVE-2014-4075
Cross-site scripting (XSS) vulnerability in System.Web.Mvc.dll in Microsoft ASP.NET Model View Controller (MVC) 2.0 up to and including 5.1 allows remote malicious users to inject arbitrary web script or HTML via a crafted web page, aka "MVC XSS Vulnerability."
Microsoft Asp.net Model View Controller 5.0
Microsoft Asp.net Model View Controller 5.1
Microsoft Asp.net Model View Controller 3.0
Microsoft Asp.net Model View Controller 4.0
Microsoft Asp.net Model View Controller 2.0
6.1
CVSSv3
CVE-2019-1075
A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'.
Microsoft Asp.net Core 2.2
Microsoft Asp.net Core 2.1
1 Article
7.5
CVSSv3
CVE-2019-0982
A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.
Microsoft Asp.net Core 2.1
Microsoft Asp.net Core 2.2
1 Article
7.5
CVSSv3
CVE-2020-0602
A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.
Microsoft Asp.net Core 2.1
Microsoft Asp.net Core 3.0
Microsoft Asp.net Core 3.1
Redhat Enterprise Linux 8.0
Redhat Enterprise Linux Eus 8.1
1 Article
8.8
CVSSv3
CVE-2020-0603
A remote code execution vulnerability exists in ASP.NET Core software when the software fails to handle objects in memory.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka 'ASP.NET Core Remote Code Execu...
Microsoft Asp.net Core 2.1
Microsoft Asp.net Core 3.0
Microsoft Asp.net Core 3.1
Redhat Enterprise Linux 8.0
Redhat Enterprise Linux Eus 8.1
2 Articles
5.5
CVSSv3
CVE-2023-36558
ASP.NET Core - Security Feature Bypass Vulnerability
Microsoft Visual Studio 2022
Microsoft .net 8.0.0
Microsoft .net
Microsoft Asp.net Core 8.0.0
Microsoft Asp.net Core
8.8
CVSSv3
CVE-2021-43877
ASP.NET Core and Visual Studio Elevation of Privilege Vulnerability
Microsoft Asp.net Core 3.1
Microsoft Asp.net Core 5.0
Microsoft Visual Studio 2019 16.7
Microsoft Visual Studio 2019 16.9
Microsoft Visual Studio 2019 16.11
Microsoft Visual Studio 2022 17.0
Microsoft Asp.net Core 6.0
NA
CVE-2005-2224
aspnet_wp.exe in Microsoft ASP.NET web services allows remote malicious users to cause a denial of service (CPU consumption from infinite loop) via a crafted SOAP message to an RPC/Encoded method.
Microsoft Asp.net -
NA
CVE-2003-0768
Microsoft ASP.Net 1.1 allows remote malicious users to bypass the Cross-Site Scripting (XSS) and Script Injection protection feature via a null character in the beginning of a tag name.
Microsoft Asp.net 1.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4956
validation
CVE-2024-35221
remote attackers
CVE-2023-30309
CVE-2024-36112
CVE-2024-23109
CVE-2023-43850
stored XSS
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »