Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
80 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 21% | — | Microsoft Asp.net CoreRedhat Enterprise LinuxRedhat Enterprise Linux EUS | 14/1/2020 | 17/6/2026 | A remote code execution vulnerability exists in ASP.NET Core software when the software fails to handle objects in memory.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka 'ASP.NET Core Remote Code Execution Vulnerability'. | |
| Modificada | Alta (7.5) | 7.6% | — | Microsoft Asp.net CoreRedhat Enterprise LinuxRedhat Enterprise Linux EUS | 14/1/2020 | 17/6/2026 | A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'. | |
| Modificada | Alta (8.8) | 4.8% | — | Microsoft Asp.net Core | 11/9/2019 | 17/6/2026 | An elevation of privilege vulnerability exists when a ASP.NET Core web application, created using vulnerable project templates, fails to properly sanitize web requests, aka 'ASP.NET Core Elevation Of Privilege Vulnerability'. | |
| Modificada | Alta (7.5) | 5.3% | — | Microsoft .net CoreMicrosoft Powershell Core | 11/9/2019 | 17/6/2026 | A denial of service vulnerability exists when .NET Core improperly handles web requests, aka '.NET Core Denial of Service Vulnerability'. | |
| Modificada | Media (6.1) | 2.6% | — | Microsoft Asp.net Core | 15/7/2019 | 17/6/2026 | A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'. | |
| Modificada | Alta (7.5) | 6.7% | — | Microsoft Asp.net Core | 16/5/2019 | 17/6/2026 | A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'. | |
| Modificada | Alta (7.5) | 4.9% | — | Microsoft .net CoreMicrosoft .net Framework | 16/5/2019 | 17/6/2026 | A denial of service vulnerability exists when .NET Framework or .NET Core improperly handle web requests, aka '.Net Framework and .Net Core Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-0820, CVE-2019-0980. | |
| Modificada | Alta (7.5) | 4.9% | — | Microsoft .net CoreMicrosoft .net Framework | 16/5/2019 | 17/6/2026 | A denial of service vulnerability exists when .NET Framework or .NET Core improperly handle web requests, aka '.Net Framework and .Net Core Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-0820, CVE-2019-0981. | |
| Modificada | Alta (7.5) | 5.7% | — | Microsoft .net CoreMicrosoft .net FrameworkRedhat Enterprise LinuxRedhat Enterprise Linux EUS+2 | 16/5/2019 | 17/6/2026 | A denial of service vulnerability exists when .NET Framework and .NET Core improperly process RegEx strings, aka '.NET Framework and .NET Core Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-0980, CVE-2019-0981. | |
| Modificada | Alta (7.5) | 7.0% | — | Microsoft Asp.net Core | 9/4/2019 | 17/6/2026 | A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'. | |
| Modificada | Media (6.5) | 2.7% | — | Microsoft Visual Studio 2017Microsoft NugetMono-project Mono FrameworkMicrosoft .net Core SDK+4 | 9/4/2019 | 17/6/2026 | A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify a NuGet package's folder structure, aka 'NuGet Package Manager Tampering Vulnerability'. | |
| Modificada | Media (5.9) | 4.5% | — | Microsoft .net CoreMicrosoft Powershell CoreMicrosoft Visual Studio 2017Microsoft .net Framework | 5/3/2019 | 17/6/2026 | A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'. | |
| Modificada | Alta (7.5) | 8.4% | — | Microsoft Asp.net Core | 8/1/2019 | 17/6/2026 | A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka "ASP.NET Core Denial of Service Vulnerability." This affects ASP.NET Core 2.1. This CVE ID is unique from CVE-2019-0548. | |
| Modificada | Alta (7.5) | 8.2% | — | Microsoft Asp.net Core | 8/1/2019 | 17/6/2026 | A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka "ASP.NET Core Denial of Service Vulnerability." This affects ASP.NET Core 2.2, ASP.NET Core 2.1. This CVE ID is unique from CVE-2019-0564. | |
| Modificada | Alta (7.5) | 9.6% | — | Microsoft .net FrameworkMicrosoft .net Core | 8/1/2019 | 17/6/2026 | An information disclosure vulnerability exists in .NET Framework and .NET Core which allows bypassing Cross-origin Resource Sharing (CORS) configurations, aka ".NET Framework Information Disclosure Vulnerability." This affects Microsoft .NET Framework 2.0, Microsoft .NET Framework 3.0, Microsoft .NET Framework… | |
| Modificada | Media (6.5) | 7.3% | — | Microsoft Asp.net Core | 14/11/2018 | 17/6/2026 | A tampering vulnerability exists when .NET Core improperly handles specially crafted files, aka ".NET Core Tampering Vulnerability." This affects .NET Core 2.1. | |
| Modificada | Alta (7.5) | 15% | — | Microsoft Asp.net CoreMicrosoft Powershell Core | 10/10/2018 | 17/6/2026 | An information disclosure vulnerability exists in .NET Core when authentication information is inadvertently exposed in a redirect, aka ".NET Core Information Disclosure Vulnerability." This affects .NET Core 2.1, .NET Core 1.0, .NET Core 1.1, PowerShell Core 6.0. | |
| Modificada | Alta (7.5) | 6.6% | — | Microsoft .net CoreMicrosoft Asp.net CoreMicrosoft System.io.pipelines | 13/9/2018 | 17/6/2026 | A denial of service vulnerability exists when System.IO.Pipelines improperly handles requests, aka "System.IO.Pipelines Denial of Service." This affects .NET Core 2.1, System.IO.Pipelines, ASP.NET Core 2.1. | |
| Modificada | Media (5.5) | 0.75% | — | Microsoft .net FrameworkMicrosoft Powershell CoreMicrosoft .net CoreMicrosoft .net Framework Developer Pack+1 | 11/7/2018 | 17/6/2026 | A security feature bypass vulnerability exists when Microsoft .NET Framework components do not correctly validate certificates, aka ".NET Framework Security Feature Bypass Vulnerability." This affects .NET Framework 4.7.2, Microsoft .NET Framework 3.0, Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2, ASP.NET Core 1.1,… | |
| Modificada | Alta (7.5) | 10% | — | Microsoft Asp.net CoreMicrosoft Asp.net Model View ControllerMicrosoft Asp.net Webpages | 11/7/2018 | 17/6/2026 | A Security Feature Bypass vulnerability exists in ASP.NET when the number of incorrect login attempts is not validated, aka "ASP.NET Security Feature Bypass Vulnerability." This affects ASP.NET, ASP.NET Core 1.1, ASP.NET Core 1.0, ASP.NET Core 2.0, ASP.NET MVC 5.2. | |
| Modificada | Alta (7.5) | 8.3% | — | Microsoft .net CoreMicrosoft .net Framework | 9/5/2018 | 17/6/2026 | A denial of service vulnerability exists when .NET and .NET Core improperly process XML documents, aka ".NET and .NET Core Denial of Service Vulnerability." This affects Microsoft .NET Framework 2.0, Microsoft .NET Framework 3.0, Microsoft .NET Framework 4.7.1, Microsoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1,… | |
| Modificada | Alta (7.5) | 9.1% | — | Microsoft Asp.net CoreMicrosoft Powershell Core | 14/3/2018 | 17/6/2026 | .NET Core 1.0, .NET Core 1.1, NET Core 2.0 and PowerShell Core 6.0.0 allow a denial of Service vulnerability due to how specially crafted requests are handled, aka ".NET Core Denial of Service Vulnerability". | |
| Modificada | Alta (7.5) | 7.8% | — | Microsoft Asp.net Core | 14/3/2018 | 17/6/2026 | ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to how ASP.NET web applications handle web requests, aka "ASP.NET Core Elevation Of Privilege Vulnerability". This CVE is unique from CVE-2018-0784. | |
| Modificada | Alta (8.8) | 9.6% | — | Microsoft Asp.net Core | 14/3/2018 | 17/6/2026 | ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to how web applications that are created from templates validate web requests, aka "ASP.NET Core Elevation Of Privilege Vulnerability". | |
| Modificada | Alta (7.5) | 3.7% | — | Microsoft .net CoreMicrosoft Powershell CoreMicrosoft .net Framework | 10/1/2018 | 17/6/2026 | Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, .NET Core 1.0 and 2.0, and PowerShell Core 6.0.0 allow a security feature bypass vulnerability due to the way certificates are validated, aka ".NET Security Feature Bypass Vulnerability." |