CVE-2018-0787: High severity asp.net core vulnerability
ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to how web applications that are created from templates validate web requests, aka "ASP.NET Core Elevation Of Privilege Vulnerability".
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-0787?
CVE-2018-0787 is a vulnerability in ASP.NET Core 1.0, 1.1, and 2.0 that allows an elevation of privilege due to how web requests are validated.
What is the severity of CVE-2018-0787?
The severity of CVE-2018-0787 is high with a CVSS score of 8.8.
How does CVE-2018-0787 affect ASP.NET Core?
CVE-2018-0787 affects ASP.NET Core 1.0, 1.1, and 2.0.
How can I fix CVE-2018-0787?
To fix CVE-2018-0787, it is recommended to update to the latest version of ASP.NET Core.
Where can I find more information about CVE-2018-0787?
More information about CVE-2018-0787 can be found on the following websites: [SecurityFocus](http://www.securityfocus.com/bid/103282), [SecurityTracker](http://www.securitytracker.com/id/1040525), [GitHub](https://github.com/aspnet/Announcements/issues/295).