First published: Tue Apr 12 2016(Updated: )
Microsoft .NET Framework 4.6 and 4.6.1 mishandles library loading, which allows local users to gain privileges via a crafted application, aka ".NET Framework Remote Code Execution Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET Framework | =4.6 | |
Microsoft .NET Framework | =4.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0148 is classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2016-0148, update Microsoft .NET Framework to the latest version that addresses this vulnerability.
CVE-2016-0148 affects Microsoft .NET Framework versions 4.6 and 4.6.1.
CVE-2016-0148 allows local users to gain elevated privileges by exploiting the mishandling of library loading.
Local users with the ability to run crafted applications on systems using the affected .NET Framework versions are at risk from CVE-2016-0148.