CVE-2023-29326
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
A new vulnerability, identified as CVE-2023-29326, has been disclosed, affecting the .NET Framework. This issue permits remote code execution, granting attackers the ability to run arbitrary code on vulnerable systems. The exact cause of the vulnerability is still under investigation, but it appears to involve a flaw in how .NET Framework handles certain file types. To mitigate this risk, Microsoft urges users to install the latest security updates as soon as possible. Failure to do so may lead to serious consequences, including data theft or unauthorized system access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft .NET Framework
Affected Vendors
- Microsoft