Back

HIGH

.NET Core & .NET Framework Denial of Service Vulnerability

Published May 21, 2020

Description

A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against a .NET Core or .NET Framework web application. The vulnerability can be exploited remotely, without authentication. A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to the .NET Core or .NET Framework application. The update addresses the vulnerability by correcting how the .NET Core or .NET Framework web application handles web requests.

Affected products

Remediation

No remediation recorded yet.

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published May 21, 2020
Updated Aug 19, 2026
Reserved Nov 4, 2019
NVD
Status Modified
Modified Aug 19, 2026
Red Hat
Severity Important
Public date May 12, 2020
ENISA EUVD
Assigner microsoft
Published May 21, 2020
Updated Aug 19, 2026
Exploited since n/a
EUVD-2022-2252 GHSA-3W5P-JHP5-C29Q