9.3
CVSSv2

CVE-2012-0163

Published: 10/04/2012 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly validate function parameters, which allows remote malicious users to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka ".NET Framework Parameter Validation Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft .net framework 4.0

microsoft .net framework 4.5

microsoft .net framework 3.5

microsoft .net framework 3.5.1

microsoft .net framework 1.0

microsoft .net framework 1.1

microsoft .net framework 2.0

Exploits

------------------------------------------------------------------------ NET Framework EncoderParameter integer overflow vulnerability ------------------------------------------------------------------------ Yorick Koster, September 2011 ------------------------------------------------------------------------ Abstract ---------------------------- ...