CVE-2018-0787
CVE-2018-0787
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 9.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
14 Mar 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to how web applications that are created from templates validate web requests, aka "ASP.NET Core Elevation Of Privilege Vulnerability".
Affected products
Microsoft Corporation · ASP.NET CoreWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →