CVE-2023-38180
Description
.NET and Visual Studio Denial of Service Vulnerability
CWE
- CWE-400 — CWE-400 Uncontrolled Resource Consumption
Affected
- Microsoft / ASP.NET Core 2.1 — v=2.0 <2.1.40 [affected]
- Microsoft / .NET 6.0 — v=6.0.0 <6.0.21 [affected]
- Microsoft / .NET 7.0 — v=7.0.0 <7.0.10 [affected]
- Microsoft / Microsoft Visual Studio 2022 version 17.2 — v=17.2.0 <17.2.18 [affected]
- Microsoft / Microsoft Visual Studio 2022 version 17.4 — v=17.4.0 <17.4.10 [affected]
- Microsoft / Microsoft Visual Studio 2022 version 17.6 — v=17.6.0 <17.6.6 [affected]
CVSS
- 3.1 score=7.5 severity=HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
References
Source
cvelistV5-main/cves/2023/38xxx/CVE-2023-38180.json