header-logo
Suggest Exploit
vendor:
Microsoft .NET Framework
by:
7.5
CVSS
HIGH
Remote Code Execution
CWE
Product Name: Microsoft .NET Framework
Affected Version From:
Affected Version To:
Patch Exists: YES
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:

Remote Code Execution Vulnerability in Microsoft .NET Framework

The Microsoft .NET Framework is prone to a remote code-execution vulnerability that affects the Just-In-Time (JIT) compiler optimization on x86 architectures. Successful exploits may allow an attacker to execute arbitrary code in the context of the browser; this may aid in further attacks.

Mitigation:

Apply the latest security updates provided by Microsoft. Do not visit untrusted websites or follow links provided by unknown or untrusted sources.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/47834/info

The Microsoft .NET Framework is prone to a remote code-execution vulnerability that affects the Just-In-Time (JIT) compiler optimization on x86 architectures.

Successful exploits may allow an attacker to execute arbitrary code in the context of the browser; this may aid in further attacks.

if ((value == null || value == new string[0]) == false)