CVE-2019-1113 PUBLISHED CVSS 6.800000190734863 MEDIUM

A remote code execution vulnerability exists in .NET software when the software fails to check the source markup of a file.An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user, aka '.NET Framework Remote Code Execution Vulnerability'.

EPSS 33.72% · 96.9th percentile

Risk Scores

CVSS v2.0
6.800000190734863
EPSS Score
33.72%
96.9th percentile

Affected Products

VendorProductVersions
MicrosoftMicrosoft .NET Framework 4.8 on Windows 10 Version 1607 for 32-bit Systemsunspecified
MicrosoftMicrosoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1809 for x64-based Systemsunspecified
MicrosoftMicrosoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1903 for x64-based Systemsunspecified
MicrosoftMicrosoft .NET Framework 4.8 on Windows Server 2012 R2 (Server Core installation)unspecified
MicrosoftMicrosoft .NET Framework 4.8 on Windows 7 for 32-bit Systems Service Pack 1unspecified
MicrosoftMicrosoft .NET Framework 4.8 on Windows RT 8.1unspecified
MicrosoftMicrosoft .NET Framework 3.5 AND 4.8 on Windows Server, version 1903 (Server Core installation)1903
MicrosoftMicrosoft .NET Framework 4.6Windows Server 2008 for 32-bit Systems Service Pack 2, Windows Server 2008 for x64-based Systems Service Pack 2
MicrosoftMicrosoft .NET Framework 4.8 on Windows Server 2012 R2unspecified
MicrosoftMicrosoft .NET Framework 4.8 on Windows 10 Version 1803 for 32-bit Systemsunspecified
MicrosoftMicrosoft .NET Framework 3.5Windows Server 2012 (Server Core installation), Windows Server 2016, Windows 10 for x64-based Systems
MicrosoftMicrosoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1903 for 32-bit Systemsunspecified
MicrosoftMicrosoft .NET Framework 4.8 on Windows 10 Version 1607 for x64-based Systemsunspecified
MicrosoftMicrosoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1/4.7.2Windows Server 2012 R2 (Server Core installation), Windows 7 for 32-bit Systems Service Pack 1, Windows 7 for x64-based Systems Service Pack 1
MicrosoftMicrosoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809 for 32-bit Systemsunspecified
MicrosoftMicrosoft Visual Studio2017
MicrosoftMicrosoft .NET Framework 3.5 AND 4.8 on Windows Server 2019unspecified
MicrosoftMicrosoft .NET Framework 4.5.2Windows 8.1 for x64-based systems, Windows 7 for x64-based Systems Service Pack 1, Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
MicrosoftMicrosoft .NET Framework 4.8 on Windows 10 Version 1703 for x64-based Systemsunspecified
MicrosoftMicrosoft .NET Framework 3.0Service Pack 2 on Windows Server 2008 for 32-bit Systems Service Pack 2, Service Pack 2 on Windows Server 2008 for x64-based Systems Service Pack 2, Service Pack 2 on Windows Server 2008 for Itanium-Based Systems Service Pack 2

…and 26 more

Timeline

References

Open in Interactive Console →