9.3
CVSSv2

CVE-2009-0090

Published: 14/10/2009 Updated: 07/12/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft .NET Framework 1.0 SP3, 1.1 SP1, and 2.0 SP1 does not properly validate .NET verifiable code, which allows remote malicious users to obtain unintended access to stack memory, and execute arbitrary code, via (1) a crafted XAML browser application (XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka "Microsoft .NET Framework Pointer Verification Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows_2000

microsoft .net_framework 1.1

microsoft .net_framework 2.0

microsoft windows_server_2003

microsoft windows_server_2008

microsoft windows_server_2008 -

microsoft .net_framework 3.5

microsoft windows_vista

microsoft windows_7 -

microsoft .net_framework 1.0

microsoft windows_xp

microsoft windows_xp -