7.5
CVSSv3

CVE-2020-1597

Published: 17/08/2020 Updated: 19/01/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A denial of service vulnerability exists when ASP.NET Core improperly handles web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against an ASP.NET Core web application. The vulnerability can be exploited remotely, without authentication. A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to the ASP.NET Core application. The update addresses the vulnerability by correcting how the ASP.NET Core web application handles web requests.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft asp.net core 2.1

microsoft asp.net core 3.1

microsoft visual studio 2019

microsoft visual studio 2017

fedoraproject fedora 32

fedoraproject fedora 33

Vendor Advisories

Synopsis Important: NET Core 31 security and bugfix update for Red Hat Enterprise Linux Type/Severity Security Advisory: Important Topic An update for rh-dotnet31-dotnet is now available for NET Core on Red Hat Enterprise LinuxRed Hat Product Security has rated this update as having a security impact of ...
Synopsis Important: NET Core 31 security and bugfix update Type/Severity Security Advisory: Important Topic An update for NET Core 31 is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring Sy ...