VYPR
Medium severity6.5NVD Advisory· Published Jan 10, 2018· Updated Jun 17, 2026

CVE-2018-0785

CVE-2018-0785

Description

ASP.NET Core 1.0. 1.1, and 2.0 allow a cross site request forgery vulnerability due to the ASP.NET Core project templates, aka "ASP.NET Core Cross Site Request Forgery Vulnerability".

Affected products

3
  • cpe:2.3:a:microsoft:asp.net_core:2.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:asp.net_core:2.0:*:*:*:*:*:*:*
    • (no CPE)range: <=2.0
  • Microsoft Corporation/ASP.NET Corev5
    Range: ASP.NET Core 1.0. 1.1, and 2.0

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.