CVE-2020-1161: High severity asp.net core vulnerability
Published May 21, 2020
·Updated
A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.
Affected Software
3 affected components
Microsoft ASP.NET Core=3.1
Microsoft Visual Studio 2017>=15.1<=15.9
Microsoft Visual Studio 2019>=16.0<=16.5
Remediation
Event History
May 21, 2020
CVE Published
via MITRE·10:53 PM
Data Sourced
via MITRE·10:53 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-1161?
The severity of CVE-2020-1161 is high.
2
How does CVE-2020-1161 affect ASP.NET Core?
CVE-2020-1161 affects ASP.NET Core 3.1.
3
Which versions of Microsoft Visual Studio are affected by CVE-2020-1161?
CVE-2020-1161 affects Microsoft Visual Studio 2017 (version 15.1 to 15.9) and Microsoft Visual Studio 2019 (version 16.0 to 16.5).
4
What is the official reference for CVE-2020-1161?
The official reference for CVE-2020-1161 can be found at https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1161.
5
How do I fix CVE-2020-1161?
To fix CVE-2020-1161, update ASP.NET Core to the latest version and apply any patches or security updates provided by Microsoft.