CVE-2024-29059

Published Mar 23, 2024

Last updated 2 months ago

Overview

Description
.NET Framework Information Disclosure Vulnerability
Source
secure@microsoft.com
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
7.5
Impact score
3.6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Severity
HIGH

Known exploits

Data from CISA

Vulnerability name
Microsoft .NET Framework Information Disclosure Vulnerability
Exploit added on
Feb 4, 2025
Exploit action due
Feb 25, 2025
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weaknesses

secure@microsoft.com
CWE-209
nvd@nist.gov
CWE-209

Social media

Hype score
Not currently trending
  1. Actively exploited CVE : CVE-2024-29059

    @transilienceai

    9 Feb 2025

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  2. #CISA added four #security flaws (CVE-2024-45195, CVE-2024-29059, CVE-2018-9276, CVE-2018-19410) to its KEV) catalogue. #Cybersecurity #infosec https://t.co/zaPMURFpJE https://t.co/BE5HDzKk6O

    @twelvesec

    7 Feb 2025

    34 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. #DOYOUKNOWCVE CISA ALERT! CISA Adds 4 New Exploited Vulnerabilities to KEV Catalog: Key Insights on CVE Type, Affected Products, Mitigation and Impact 🔹 CVE-2024-45195 – Forced Browsing Vulnerability in Apache OFBiz 🔹 CVE-2024-29059 – Information Disclosure Vulnerability in… h

    @Loginsoft_Inc

    6 Feb 2025

    62 Impressions

    1 Retweet

    4 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. Latest Known Exploited Vulnerabilities (#KEV) : #CVE-2024-29059 #Microsoft .NET Framework Information Disclosure Vulnerability https://t.co/M7yfUrNHkh

    @ScyScan

    5 Feb 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. CISA añade cuatro vulnerabilidades explotadas activamente al catálogo de KEV. La lista de vulnerabilidades es la siguiente: CVE-2024-45195 (CVSS: 7,5/9,8), CVE-2024-29059 (CVSS: 7,5), CVE-2018-9276 (CVSS: 7,2) y CVE-2018-19410 (CVSS: 9,8). #cybersecurity https://t.co/auOVJDqTtm

    @EHCGroup

    5 Feb 2025

    56 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. csirt_it: ‼️ Rilevato lo sfruttamento attivo in rete della vulnerabilità CVE-2024-29059 – già sanata dal vendor – relativa al #Framework #.NET Rischio: 🟠 🔗 https://t.co/cTKd7tZp13 ⚠ Importante mantenere i sistemi aggiornati https://t.co/n6ZYDocPKT

    @Vulcanux_

    5 Feb 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. ‼️ Rilevato lo sfruttamento attivo in rete della vulnerabilità CVE-2024-29059 – già sanata dal vendor – relativa al #Framework #.NET Rischio: 🟠 🔗 https://t.co/kfC7DM5sPP ⚠ Importante mantenere i sistemi aggiornati https://t.co/Ofe76xZ9Co

    @csirt_it

    5 Feb 2025

    98 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. 🚨 CVE Alert: Microsoft .NET Framework Information Disclosure Vulnerability Exploited In the Wild 🚨 Vulnerability Details: CVE-2024-29059 (CVSS 7.5/10) Microsoft .NET Framework Information Disclosure Vulnerability Impact: A successful exploit may allow an attacker to… https://

    @CyberxtronTech

    5 Feb 2025

    70 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  9. ماکروسافت برای یکسری از آسیب پذیری هایی که برای محصولات مختلف این شرکت شامل .NET Framework و Microsoft Exchange منتشر شده است ، پچ لازم را ارائه نموده است. از مهترین کدهای شناسایی این آسیب پذیری ها می توان به CVE-2024-29059 و CVE-2024-28916 اشاره نمود. https://t.co/Poz3aKY03t ht

    @AmirHossein_sec

    2 Dec 2024

    24 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations