High severity7.8NVD Advisory· Published Apr 12, 2016· Updated May 6, 2026
CVE-2016-0148
CVE-2016-0148
Description
Microsoft .NET Framework 4.6 and 4.6.1 mishandles library loading, which allows local users to gain privileges via a crafted application, aka ".NET Framework Remote Code Execution Vulnerability."
Affected products
2cpe:2.3:a:microsoft:.net_framework:4.6:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:microsoft:.net_framework:4.6:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:.net_framework:4.6.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- seclists.org/fulldisclosure/2016/Apr/42nvdMailing ListThird Party Advisory
- www.securitytracker.com/id/1035535nvdThird Party Advisory
- www.zerodayinitiative.com/advisories/ZDI-16-234nvdThird Party Advisory
- packetstormsecurity.com/files/136671/.NET-Framework-4.6-DLL-Hijacking.htmlnvd
- www.securityfocus.com/archive/1/538063/100/0/threadednvd
- docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-041nvd
News mentions
0No linked articles in our index yet.