VDB
GCVE-110-NCSC-2024-395
GCVE-110-NCSC-2024-395
Advisory PublishedCVSS 8.1/10
Microsoft heeft kwetsbaarheden verholpen in diverse Developer Tools.
Weaknesses (CWE)
CWE-416Use After FreeCWE-407Inefficient Algorithmic ComplexityCWE-284Improper Access ControlCWE-59Improper Link Resolution Before File Access ('Link Following')CWE-77Improper Neutralization of Special Elements used in a Command ('Command Injection')CWE-306Missing Authentication for Critical Function
Risk Scores
CVSS 3.1
8.1/10
High · CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| microsoft | microsoft_visual_studio_2017_version_15.9__includes_15.0_-_15.8_ | — | — |
| microsoft | visual_c___redistributable_installer | — | — |
| microsoft | microsoft_visual_studio_2015_update_3 | — | — |
| microsoft | microsoft_.net_framework_3.5_and_4.8 | — | — |
| microsoft | .net_8.0 | — | — |
| microsoft | microsoft_.net_framework_3.5.1 | — | — |
| microsoft | microsoft_.net_framework_4.6.2 | — | — |
| microsoft | microsoft_visual_studio_2022_version_17.11 | — | — |
| microsoft | microsoft_.net_framework_3.5_and_4.7.2 | — | — |
| microsoft | microsoft_.net_framework_4.6.2_4.7_4.7.1_4.7.2 | — | — |
| microsoft | microsoft_.net_framework_3.5 | — | — |
| microsoft | microsoft_.net_framework_2.0_service_pack_2 | — | — |
| microsoft | microsoft_.net_framework_4.6_4.6.2 | — | — |
| microsoft | .net_6.0 | — | — |
| microsoft | microsoft_visual_studio_2022_version_17.6 | — | — |
| microsoft | microsoft_.net_framework_3.0_service_pack_2 | — | — |
| microsoft | visual_studio_code | — | — |
| microsoft | microsoft_visual_studio_2019_version_16.11__includes_16.0_-_16.10_ | — | — |
| microsoft | microsoft_visual_studio_2022_version_17.10 | — | — |
| microsoft | microsoft_.net_framework_3.5_and_4.8.1 | — | — |
| microsoft | deepspeed | — | — |
| microsoft | microsoft_.net_framework_4.8 | — | — |
| microsoft | microsoft_visual_studio_2022_version_17.8 | — | — |
Browse GCVE Records
74,352 records in the GCVE database · Updated July 22, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.