Loading HuntDB...

CVE-2020-0603

UNKNOWN
Published 2020-01-14T23:11:21
Actions:

Expert Analysis

Professional remediation guidance

Get tailored security recommendations from our analyst team for CVE-2020-0603. We'll provide specific mitigation strategies based on your environment and risk profile.

No CVSS data available

Description

A remote code execution vulnerability exists in ASP.NET Core software when the software fails to handle objects in memory.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka 'ASP.NET Core Remote Code Execution Vulnerability'.

Available Exploits

No exploits available for this CVE.

Related News

No news articles found for this CVE.

Affected Products

GitHub Security Advisories

Community-driven vulnerability intelligence from GitHub

✓ GitHub Reviewed HIGH

Remote code execution in ASP.NET Core

GHSA-655q-9gvg-q4cm

Advisory Details

A remote code execution vulnerability exists in ASP.NET Core software when the software fails to handle objects in memory.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka 'ASP.NET Core Remote Code Execution Vulnerability'.

Affected Packages

NuGet Microsoft.AspNetCore.All
ECOSYSTEM: ≥2.1.0 <2.1.15
NuGet Microsoft.AspNetCore.App
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App
ECOSYSTEM: ≥3.0.0 <3.0.1
NuGet Microsoft.AspNetCore.App
ECOSYSTEM: ≥2.1.0 <2.1.15
NuGet Microsoft.AspNetCore.Http.Connections
ECOSYSTEM: ≥1.0.0 <1.0.15
NuGet Microsoft.AspNetCore.App.Runtime.linux-arm
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.linux-arm64
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.linux-musl-arm64
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.linux-musl-x64
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.linux-x64
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.osx-x64
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.win-arm
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.win-x64
ECOSYSTEM: ≥3.1.0 <3.1.1
NuGet Microsoft.AspNetCore.App.Runtime.win-x86
ECOSYSTEM: ≥3.1.0 <3.1.1

CVSS Scoring

CVSS Score

7.5

Advisory provided by GitHub Security Advisory Database. Published: May 24, 2022, Modified: July 7, 2022

References

Published: 2020-01-14T23:11:21
Last Modified: 2024-08-04T06:11:04.603Z
Copied to clipboard!