.net | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kategori: .net - CVE listesi
PRODUCT 11 kayıt
High CVSS: 7.8

CVE-2026-26131

Incorrect default permissions in .NET allows an authorized attacker to elevate privileges locally.
High CVSS: 7.5

CVE-2026-26127

Out-of-bounds read in .NET allows an unauthorized attacker to deny service over a network.
Critical CVSS: 9.1

CVE-2024-57854

Net::NSCA::Client versions through 0.009002 for Perl uses a poor random number generator. Version v0.003 switched to use Data::Rand::Obscure instead of Crypt::Random for generation of a random initialisation vectors. Data::Rand::Obscure u…
Medium CVSS: 6.5

CVE-2021-4456

Net::CIDR versions before 0.24 for Perl mishandle leading zeros in IP CIDR addresses, which may have unspecified impact. The functions `addr2cidr` and `cidrlookup` may return leading zeros in a CIDR string, which may in turn be parsed as o…
High CVSS: 7.5

CVE-2026-21218

Improper handling of missing special element in .NET allows an unauthorized attacker to perform spoofing over a network.
High CVSS: 7.3

CVE-2025-55247

Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileges locally.
Medium CVSS: 6.0

CVE-2025-43857

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.5.7, 0.4.20, 0.3.9, and 0.2.5, there is a possibility for denial of service by memory exhaustion when net-imap reads server respo…
Medium CVSS: 5.5

CVE-2024-58036

Net::Dropbox::API 1.9 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions. Specifically Net::Dropbox::API uses the Data::Random library which sp…
High CVSS: 8.8

CVE-2025-21176

.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
High CVSS: 7.5

CVE-2025-21172

.NET and Visual Studio Remote Code Execution Vulnerability
High CVSS: 7.5

CVE-2025-21171

.NET Remote Code Execution Vulnerability