CVE-2023-28260
Published Apr 11, 2023
Last updated 2 years ago
Overview
- Description
- .NET DLL Hijacking Remote Code Execution Vulnerability
- Source
- secure@microsoft.com
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:.net:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FCFC39D-83CC-4BFA-9BF3-4F7B9675A354", "versionEndExcluding": "6.0.16", "versionStartIncluding": "6.0.0" }, { "criteria": "cpe:2.3:a:microsoft:.net:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "45897753-77F8-4ABA-BF4E-E68E851DF330", "versionEndExcluding": "7.0.5", "versionStartIncluding": "7.0.0" }, { "criteria": "cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06B7E408-A6EC-4556-A535-3F3340F314F7", "versionEndExcluding": "17.0.21", "versionStartIncluding": "17.0" }, { "criteria": "cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78A2B957-0654-45EF-ADE4-EEDA380D4583", "versionEndExcluding": "17.2.15", "versionStartIncluding": "17.2" }, { "criteria": "cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6CFF8AF1-4BEE-4CED-ADB5-8B7DE3C6A6E6", "versionEndExcluding": "17.4.7", "versionStartIncluding": "17.4" }, { "criteria": "cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D305BC5-DF3E-45FE-9421-385D6A1E9EFC", "versionEndExcluding": "17.5.4", "versionStartIncluding": "17.5" } ], "operator": "OR" } ] } ]