CVE-2019-1079 PUBLISHED CVSS 6.5 MEDIUM

An information disclosure vulnerability exists when Visual Studio improperly parses XML input in certain settings files, aka 'Visual Studio Information Disclosure Vulnerability'.

EPSS 25.34% · 96.1th percentile

Risk Scores

CVSS v3.0
6.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
25.34%
96.1th percentile

Affected Products

VendorProductVersions
microsoftvisual_studio2015, 2010, 2012
MicrosoftMicrosoft Visual Studio2010 Service Pack 1, 2012 Update 5, 2013 Update 5

Timeline

References

Open in Interactive Console →