CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability'. |
.NET and Visual Studio Denial of Service Vulnerability |
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023. |
Visual Studio Code npm-script Extension Remote Code Execution Vulnerability |
Visual Studio Remote Code Execution Vulnerability |
Visual Studio Elevation of Privilege Vulnerability |
Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code over a network. |
Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network. |
Visual Studio Code Spoofing Vulnerability |
.NET and Visual Studio Denial of Service Vulnerability |
.NET and Visual Studio Information Disclosure Vulnerability |
Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. |
Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. |
Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally. |
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. |
Improper access control in Visual Studio Code allows an authorized attacker to elevate privileges locally. |
.NET and Visual Studio Remote Code Execution Vulnerability |
Visual Studio Elevation of Privilege Vulnerability |
Missing authentication for critical function in Visual Studio Code extension for Arduino allows an unauthenticated attacker to perform remote code execution through network attack vector. |
Visual Studio Collector Service Denial of Service Vulnerability |