.NET Framework
CVEs (9)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-62872 | Hig | 0.57 | 8.8 | 0.01 | Aug 11, 2026 | Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network. | ||
| CVE-2026-65810 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2020-1066 | Hig | 0.51 | 7.8 | 0.03 | May 21, 2020 | An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privilege level. To exploit the vulnerability, an attacker would first have to access the local machine, and then run a malicious program. The update addresses the… | ||
| CVE-2023-36873 | Hig | 0.48 | 7.4 | 0.01 | Aug 8, 2023 | .NET Framework Spoofing Vulnerability | ||
| CVE-2026-50650 | Hig | 0.44 | 7.8 | 0.00 | Jul 14, 2026 | Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2026-50646 | Hig | 0.44 | 7.8 | 0.01 | Jul 14, 2026 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-62897 | Hig | 0.39 | 7.0 | 0.00 | Aug 11, 2026 | Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-32226 | Med | 0.38 | 5.9 | 0.01 | Apr 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in .NET Framework allows an unauthorized attacker to deny service over a network. | ||
| CVE-2023-21722 | Med | 0.33 | 5.0 | 0.01 | Feb 14, 2023 | .NET Framework Denial of Service Vulnerability |
- risk 0.57cvss 8.8epss 0.01
Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network.
- risk 0.51cvss 7.8epss 0.00
Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.03
An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privilege level. To exploit the vulnerability, an attacker would first have to access the local machine, and then run a malicious program. The update addresses the…
- risk 0.48cvss 7.4epss 0.01
.NET Framework Spoofing Vulnerability
- risk 0.44cvss 7.8epss 0.00
Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.
- risk 0.44cvss 7.8epss 0.01
Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.
- risk 0.39cvss 7.0epss 0.00
Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally.
- risk 0.38cvss 5.9epss 0.01
Concurrent execution using shared resource with improper synchronization ('race condition') in .NET Framework allows an unauthorized attacker to deny service over a network.
- risk 0.33cvss 5.0epss 0.01
.NET Framework Denial of Service Vulnerability