Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
.NET Framework Number Of NVD 174 CRITICAL 6 HIGH 124 MEDIUM 41 LOW 3
URL https://dotnet.microsoft.com/
Explanation NET Framework is a managed execution environment for Windows that provides a variety of services to running apps. NET Framework is a managed execution environment for Windows that provides a variety of services to running apps. It consists of the Common Language Runtime (CLR), an execution engine that handles running apps, and the .NET Framework class libraries, which are validated, reusable code libraries that developers can call from their own apps. The .NET Framework provides the following services to running apps

Translated and excerpted from [https://docs.microsoft.com/ja-jp/dotnet/framework/get-started/]
Tag
  • VB.NET
  • C#

Add Information URL
No Type Name URL
1 https://dotnet.microsoft.com/download/dotnet-framework
2 https://docs.microsoft.com/en-us/dotnet/framework/migration-guide/how-to-determine-which-versions-are-installed
3 https://dotnet.microsoft.com/en-us/platform/support/policy/dotnet-core

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
171 .NET Framework 6.7 6.7.2 Nov. 8, 2021 Nov. 12, 2024 0 0 0 0
172 .NET Framework 4.8 4.8.1 April 18, 2019 3 34 7 1
173 .NET Framework 4.7 4.7.2 April 5, 2017 5 50 9 1
174 .NET Framework 4.6 4.6.2 July 20, 2015 6 64 14 1
175 .NET Framework 4.5 4.5.2 Aug. 15, 2012 Jan. 12, 2016 4 61 18 1
176 .NET Framework 4.0 April 12, 2010 Jan. 12, 2016 0 44 13 1
177 .NET Framework 3.5 SP1 Aug. 11, 2008 Oct. 10, 2028 6 98 25 3
178 .NET Framework 3.5 Nov. 19, 2007 July 12, 2011 6 98 25 3
179 .NET Framework 3.0 Nov. 6, 2006 July 12, 2011 5 51 9 1
180 .NET Framework 2.0 Oct. 27, 2005 July 12, 2011 4 89 25 3
181 .NET Framework 1.1 April 9, 2003 Oct. 8, 2013 0 27 10 1
182 .NET Framework 1.0 Jan. 15, 2002 July 14, 2009 0 18 8 0
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
171 -
4.3
MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for AS… NVD-CWE-Other
CVE-2005-0509 cpe:2.3:a:microsoft:.net_framework:1.1:sp1
cpe:2.3:a:microsoft:.net_framework:1.1:*
cpe:2.3:a:microsoft:.net_fram…
2016-10-18 12:12
2005-03-14
Show GitHub Exploit DB Packet Storm
172 -
9.3
HIGH Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with … NVD-CWE-Other
CVE-2004-0200 cpe:2.3:a:microsoft:.net_framework:1.0:sp2 2018-10-31 01:25
2004-09-28
Show GitHub Exploit DB Packet Storm
173 -
10.0
HIGH Buffer overflow in ASP.NET Worker Process allows remote attackers to cause a denial of service (restart) and possibly execute arbitrary code via a routine that processes cookies while in StateServer … NVD-CWE-Other
CVE-2002-0369 cpe:2.3:a:microsoft:.net_framework:1.0:* 2018-10-13 06:31
2002-07-26
Show GitHub Exploit DB Packet Storm
174 -
5.0
MEDIUM orderdetails.aspx, as made available to Microsoft .NET developers as example code and demonstrated on www.ibuyspystore.com, allows remote attackers to view the orders of other users by modifying the … NVD-CWE-Other
CVE-2002-0409 cpe:2.3:a:microsoft:.net_framework:1.0:* 2016-10-18 11:20
2002-07-26
Show GitHub Exploit DB Packet Storm