First published: Thu Aug 12 2021(Updated: )
ASP.NET Core and Visual Studio Information Disclosure Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft ASP.NET Core | >=2.1<=2.1.2 | |
Microsoft ASP.NET Core | >=3.1<=3.1.17 | |
Microsoft ASP.NET Core | >=5.0<=5.0.8 | |
Microsoft Visual Studio 2019 | >=16.0<=16.10 | |
Microsoft Visual Studio 2019 Macos | =8.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-34532 is an Information Disclosure vulnerability in ASP.NET Core and Visual Studio.
Microsoft ASP.NET Core versions 2.1, 3.1, and 5.0, as well as Microsoft Visual Studio 2019 versions 16.0 and 16.10 are affected by CVE-2021-34532.
CVE-2021-34532 has a severity rating of 5.5 (medium).
To fix the CVE-2021-34532 vulnerability, it is recommended to update to the latest versions of Microsoft ASP.NET Core and Microsoft Visual Studio 2019.
You can find more information about CVE-2021-34532 on the Microsoft Security Portal: [CVE-2021-34532](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-34532).