CVE-2019-1075: Medium severity asp.net core vulnerability
Published Jul 15, 2019
·Updated
A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'.
Affected Software
2 affected components
Microsoft ASP.NET Core=2.1
Microsoft ASP.NET Core=2.2
Remediation
Event History
Jul 15, 2019
CVE Published
via MITRE·06:56 PM
Data Sourced
via MITRE·06:56 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for the ASP.NET Core spoofing vulnerability?
The vulnerability ID for the ASP.NET Core spoofing vulnerability is CVE-2019-1075.
2
What is the severity of CVE-2019-1075?
The severity of CVE-2019-1075 is medium with a CVSS score of 6.1.
3
What software is affected by CVE-2019-1075?
The affected software is Microsoft ASP.NET Core versions 2.1 and 2.2.
4
What is the description of CVE-2019-1075?
CVE-2019-1075 is a spoofing vulnerability in ASP.NET Core that could lead to an open redirect.
5
How can I fix the ASP.NET Core spoofing vulnerability?
To fix the ASP.NET Core spoofing vulnerability, update to a patched version of Microsoft ASP.NET Core 2.1 or 2.2.