CVE-2023-36799

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Sep 12, 2023
Updated: May 29, 2024
CWE ID 400

Summary

CVE-2023-36799 is a denial-of-service (DoS) vulnerability affecting .NET Core and Visual Studio. Maliciously crafted requests can cause the targeted application to consume excessive system resources, leading to a denial-of-service condition. This issue stems from an improper input validation mechanism in the affected software. The vulnerability poses a significant risk to organizations that rely on .NET Core and Visual Studio for their software development and deployment. Mitigation measures include updating to the latest versions and implementing proper input validation techniques.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Visual Studio 2022
  • Microsoft .NET Framework

Affected Vendors

  • Microsoft