Microsoft .NET Framework是美国Microsoft公司的一款专用于 Windows 平台的软件开发框架与运行环境。 Microsoft .NET Framework 3.5版本、4.6.2版本、4.7版本、4.7.1版本、4.7.2版本、4.8版本和4.8.1版本存在路径遍历漏洞,该漏洞源于相对路径遍历问题,可能允许未经授权的攻击者在本地提升权限。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft .NET Framework 3.5 | 3.5.0< 2.0.50727.9183 & 3.0.30729.9169 |
affected |
| Microsoft | Microsoft .NET Framework 3.5 AND 4.6.2/4.7/4.7.1/4.7.2 | 3.0.0.0< 2.0.50727.8984 & 3.0.30729.8980 & 4.7.4144.0 |
affected |
| Microsoft | Microsoft .NET Framework 3.5 AND 4.7.2 | 4.7.0< 2.0.50727.9070 & 3.0.30729.9068 & 4.7.4144.0 |
affected |
| Microsoft | Microsoft .NET Framework 3.5 AND 4.8 | 4.8.0< 2.0.50727.9070 & 3.0.30729.9068 & 4.8.4805.0 |
affected |
| Microsoft | Microsoft .NET Framework 3.5 AND 4.8.1 | 4.8.1< 2.0.50727.9183 & 3.0.30729.9169 & 4.8.9343.0 |
affected |
| Microsoft | Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 | 4.7.0< 4.7.4144.0 |
affected |
| Microsoft | Microsoft .NET Framework 4.8 | 4.8.0< 4.8.4805.0 |
affected |
| Microsoft | Microsoft .NET Framework 4.8.1 | 4.8.0.0< 4.8.9344.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft .NET Framework 3.5 | 3.5.0 ~ 2.0.50727.9183 & 3.0.30729.9169 | - |
|
| Microsoft | Microsoft .NET Framework 3.5 AND 4.6.2/4.7/4.7.1/4.7.2 | 3.0.0.0 ~ 2.0.50727.8984 & 3.0.30729.8980 & 4.7.4144.0 | - |
|
| Microsoft | Microsoft .NET Framework 3.5 AND 4.7.2 | 4.7.0 ~ 2.0.50727.9070 & 3.0.30729.9068 & 4.7.4144.0 | - |
|
| Microsoft | Microsoft .NET Framework 3.5 AND 4.8 | 4.8.0 ~ 2.0.50727.9070 & 3.0.30729.9068 & 4.8.4805.0 | - |
|
| Microsoft | Microsoft .NET Framework 3.5 AND 4.8.1 | 4.8.1 ~ 2.0.50727.9183 & 3.0.30729.9169 & 4.8.9343.0 | - |
|
| Microsoft | Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 | 4.7.0 ~ 4.7.4144.0 | - |
|
| Microsoft | Microsoft .NET Framework 4.8 | 4.8.0 ~ 4.8.4805.0 | - |
|
| Microsoft | Microsoft .NET Framework 4.8.1 | 4.8.0.0 ~ 4.8.9344.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-59124 | 9.8 CRITICAL | Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability |
| CVE-2026-62815 | 9.8 CRITICAL | Microsoft QUIC Remote Code Execution Vulnerability |
| CVE-2026-62878 | 9.8 CRITICAL | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-62893 | 9.8 CRITICAL | Windows Deployment Services TFTP Server Remote Code Execution Vulnerability |
| CVE-2026-65791 | 9.8 CRITICAL | Windows iSCSI Target Service Remote Code Execution Vulnerability |
| CVE-2026-50516 | 9.4 CRITICAL | Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability |
| CVE-2026-70306 | 9.3 CRITICAL | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-62785 | 8.8 HIGH | Windows LDAP - Lightweight Directory Access Protocol Remote Code Execution Vulnerability |
| CVE-2026-62817 | 8.8 HIGH | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-62795 | 8.8 HIGH | Windows LDAP - Lightweight Directory Access Protocol Remote Code Execution Vulnerability |
| CVE-2026-70326 | 8.8 HIGH | Microsoft SharePoint Server Elevation of Privilege Vulnerability |
| CVE-2026-62784 | 8.8 HIGH | Microsoft Local Security Authority Server (lsasrv) Remote Code Execution Vulnerability |
| CVE-2026-62823 | 8.8 HIGH | Windows DHCP Server Remote Code Execution Vulnerability |
| CVE-2026-62872 | 8.8 HIGH | .NET Framework Elevation of Privilege Vulnerability |
| CVE-2026-62824 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-62822 | 8.8 HIGH | Windows GDI+ Remote Code Execution Vulnerability |
| CVE-2026-62800 | 8.8 HIGH | Windows SMBv3 Server Remote Code Execution Vulnerability |
| CVE-2026-70337 | 8.8 HIGH | Microsoft PowerShell Remote Code Execution Vulnerability |
| CVE-2026-62818 | 8.8 HIGH | Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability |
| CVE-2026-62790 | 8.8 HIGH | Windows SMBv3 Server Remote Code Execution Vulnerability |
Showing top 20 of 402 CVEs. View all on vendor page → →
No comments yet