Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
microsoft asp.net vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2005-0452
Multiple cross-site scripting (XSS) vulnerabilities in Microsoft ASP.NET (.Net) 1.0 and 1.1 to SP1 allow remote malicious users to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal ASCII characters, includi...
Microsoft Asp.net 1.0
Microsoft Asp.net 1.1
1 EDB exploit
1 Github repository
NA
CVE-2014-4075
Cross-site scripting (XSS) vulnerability in System.Web.Mvc.dll in Microsoft ASP.NET Model View Controller (MVC) 2.0 up to and including 5.1 allows remote malicious users to inject arbitrary web script or HTML via a crafted web page, aka "MVC XSS Vulnerability."
Microsoft Asp.net Model View Controller 5.0
Microsoft Asp.net Model View Controller 5.1
Microsoft Asp.net Model View Controller 3.0
Microsoft Asp.net Model View Controller 4.0
Microsoft Asp.net Model View Controller 2.0
7.5
CVSSv3
CVE-2019-0982
A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.
Microsoft Asp.net Core 2.1
Microsoft Asp.net Core 2.2
1 Article
6.1
CVSSv3
CVE-2019-1075
A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'.
Microsoft Asp.net Core 2.2
Microsoft Asp.net Core 2.1
1 Article
7.5
CVSSv3
CVE-2020-0602
A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.
Microsoft Asp.net Core 2.1
Microsoft Asp.net Core 3.0
Microsoft Asp.net Core 3.1
Redhat Enterprise Linux 8.0
Redhat Enterprise Linux Eus 8.1
1 Article
8.8
CVSSv3
CVE-2020-0603
A remote code execution vulnerability exists in ASP.NET Core software when the software fails to handle objects in memory.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka 'ASP.NET Core Remote Code Execu...
Microsoft Asp.net Core 2.1
Microsoft Asp.net Core 3.0
Microsoft Asp.net Core 3.1
Redhat Enterprise Linux 8.0
Redhat Enterprise Linux Eus 8.1
2 Articles
5.5
CVSSv3
CVE-2023-36558
ASP.NET Core - Security Feature Bypass Vulnerability
Microsoft Visual Studio 2022
Microsoft .net 8.0.0
Microsoft .net
Microsoft Asp.net Core 8.0.0
Microsoft Asp.net Core
8.8
CVSSv3
CVE-2021-43877
ASP.NET Core and Visual Studio Elevation of Privilege Vulnerability
Microsoft Asp.net Core 3.1
Microsoft Asp.net Core 5.0
Microsoft Visual Studio 2019 16.7
Microsoft Visual Studio 2019 16.9
Microsoft Visual Studio 2019 16.11
Microsoft Visual Studio 2022 17.0
Microsoft Asp.net Core 6.0
NA
CVE-2005-2224
aspnet_wp.exe in Microsoft ASP.NET web services allows remote malicious users to cause a denial of service (CPU consumption from infinite loop) via a crafted SOAP message to an RPC/Encoded method.
Microsoft Asp.net -
NA
CVE-2010-2084
Microsoft ASP.NET 2.0 does not prevent setting the InnerHtml property on a control that inherits from HtmlContainerControl, which allows remote malicious users to conduct cross-site scripting (XSS) attacks via vectors related to an attribute.
Microsoft Asp.net 2.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
man-in-the-middle
CVE-2024-34558
CVE-2024-32674
CVE-2024-34351
XPath injection
CVE-2023-45866
CVE-2024-25528
CVE-2024-25517
path traversal
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »