CVE-2024-21392

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Mar 12, 2024
Updated: May 29, 2024
CWE ID 400

Summary

CVE-2024-21392 is a newly disclosed Denial of Service (DoS) vulnerability affecting both .NET and Visual Studio applications. Maliciously crafted requests can cause the affected software to consume excessive system resources, leading to a denial of service condition. This issue may result in server overload and potential downtime for organizations relying on these platforms, necessitating immediate attention and remediation from affected users. Microsoft is currently working on a patch to address this vulnerability. Until then, it is recommended that users employ protective measures to mitigate the risk of potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share