Description
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
Published: 2023-06-14
Score: 7.5 High
EPSS: 1.2% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-1839 .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
Github GHSA Github GHSA GHSA-jx7q-xxmw-44vf .NET Elevation of Privilege Vulnerability
Ubuntu USN Ubuntu USN USN-6161-1 .NET vulnerabilities
History

Wed, 25 Feb 2026 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft powershell
Microsoft visual Studio
Microsoft visual Studio 2022
CPEs cpe:2.3:a:microsoft:.net:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:*:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net_framework:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:powershell:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:powershell:*:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*
Vendors & Products Microsoft powershell
Microsoft visual Studio
Microsoft visual Studio 2022

Wed, 01 Jan 2025 03:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 01 Jan 2025 02:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:microsoft:.net:2.0:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:3.0:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:3.5:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:4.6.2:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:4.7.2:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:4.8.1:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:4.8:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:.net:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:powershell:7.2:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:powershell:7.3:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2022:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:17.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:17.2:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2022:17.4:*:*:*:*:*:*:*
Vendors & Products Microsoft powershell
Microsoft visual Studio
Microsoft visual Studio 2022

Subscriptions

Microsoft .net .net Framework Powershell Visual Studio Visual Studio 2022 Windows 10 1507 Windows 10 1607 Windows 10 1809 Windows 10 21h2 Windows 10 22h2 Windows 11 21h2 Windows 11 22h2 Windows Server 2008 Windows Server 2012 Windows Server 2016 Windows Server 2019 Windows Server 2022
Redhat Enterprise Linux Rhel Dotnet
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2025-01-01T01:43:33.488Z

Reserved: 2023-01-31T20:37:47.257Z

Link: CVE-2023-24936

cve-icon Vulnrichment

Updated: 2024-08-02T11:11:43.705Z

cve-icon NVD

Status : Modified

Published: 2023-06-14T15:15:09.563

Modified: 2024-11-21T07:48:48.003

Link: CVE-2023-24936

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-06-14T00:00:00Z

Links: CVE-2023-24936 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses