ASP.NET Core Elevation Of Privilege Vulnerability - CVE-2018-0784ID: oval:org.secpod.oval:def:43462 | Date: (C)2018-01-11 (M)2023-11-29 |
Class: VULNERABILITY | Family: windows |
An elevation of privilege vulnerability exists when a ASP.NET Core web application, created using vulnerable project templates, fails to properly sanitize web requests. An attacker who successfully exploited this vulnerability could perform content injection attacks and run script in the security context of the logged-on user.
Platform: |
Microsoft Windows 10 |
Microsoft Windows 2000 |
Microsoft Windows 7 |
Microsoft Windows 8 |
Microsoft Windows 8.1 |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |
Microsoft Windows Server 2016 |
Microsoft Windows Vista |
Microsoft Windows XP |
Product: |
Microsoft ASP .NET core 2.0 |