CVE Vulnerabilities

CVE-2018-0808

Published: Mar 14, 2018 | Modified: Oct 03, 2019
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to how ASP.NET web applications handle web requests, aka ASP.NET Core Elevation Of Privilege Vulnerability. This CVE is unique from CVE-2018-0784.

Affected Software

Name Vendor Start Version End Version
Asp.net_core Microsoft 1.0 (including) 1.0 (including)
Asp.net_core Microsoft 1.1 (including) 1.1 (including)
Asp.net_core Microsoft 2.0 (including) 2.0 (including)

References