CRITICALNuGet

.NET Remote Code Execution vulnerability

.NET Remote Code Execution vulnerability

CVE-2023-28260Published 3 years agoUpdated 2 weeks agoSource: OSV

Affected packages

  • Microsoft.NetCore.App.Runtime.win-arm7.0.0 → 7.0.5
  • Microsoft.NetCore.App.Runtime.win-arm647.0.0 → 7.0.5
  • Microsoft.NetCore.App.Runtime.win-x646.0.0 → 6.0.16
  • Microsoft.NetCore.App.Runtime.win-x867.0.0 → 7.0.5

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

.NET Remote Code Execution vulnerability | HackTribune