First published: Tue Nov 14 2023(Updated: )
ASP.NET Security Feature Bypass Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET Framework | =4.8 | |
Microsoft .NET Framework | =4.6.2 | |
Microsoft .NET Framework | =3.5=4.6.2=4.7=4.7.1=4.7.2 | |
Microsoft .NET Framework | =3.5=4.7.2 | |
Microsoft .NET Framework | =3.5=4.8.1 | |
Microsoft .NET Framework | =4.6.2=4.7=4.7.1=4.7.2 | |
Microsoft .NET Framework | =4.8 | |
Microsoft .NET Framework | =3.5=4.8.1 | |
Microsoft .NET Framework | =3.5=4.8 | |
Microsoft .NET Framework | =3.0 | |
Microsoft .NET Framework | =3.5=4.8 | |
Microsoft .NET Framework | =3.5=4.6=4.6.2 | |
Microsoft .NET Framework | =3.5=4.8 | |
Microsoft .NET Framework | =3.5=4.8.1 | |
Microsoft .NET Framework | =4.8 | |
Microsoft .NET Framework | =3.5=4.8.1 | |
Microsoft .NET Framework | =3.5 | |
Microsoft .NET Framework | =3.5 | |
Microsoft .NET Framework | =3.5=4.8 | |
Microsoft .NET Framework | =4.6.2=4.7=4.7.1=4.7.2 | |
Microsoft .NET Framework | =3.5=4.8 | |
Microsoft .NET Framework | =4.8 | |
Microsoft .NET Framework | =2.0 | |
Microsoft .NET Framework | =3.5.1 | |
Microsoft .NET Framework | =3.5=4.8.1 | |
Microsoft .NET Framework | =3.5=4.8.1 | |
Microsoft .NET Framework | =2.0-sp2 | |
Microsoft Windows Server 2008 | =sp2 | |
Microsoft Windows Server 2008 | =sp2 | |
Microsoft .NET Framework | =3.0-sp2 | |
Microsoft .NET Framework | =3.5 | |
Microsoft Windows Server 2012 | ||
Microsoft Windows Server 2012 | =r2 | |
Microsoft .NET Framework | =4.6.2 | |
Microsoft .NET Framework | =4.7 | |
Microsoft .NET Framework | =4.7.1 | |
Microsoft .NET Framework | =4.7.2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows 10 1507 | ||
Microsoft Windows 10 1507 | ||
Microsoft Windows 10 1809 | ||
Microsoft Windows 10 1809 | ||
Microsoft Windows 10 1809 | ||
Microsoft .NET Framework | =4.8 | |
Microsoft Windows 10 21h2 | ||
Microsoft Windows 10 21h2 | ||
Microsoft Windows 10 22h2 | ||
Microsoft Windows 10 22h2 | ||
Microsoft Windows 10 22h2 | ||
Microsoft Windows 11 21h2 | ||
Microsoft Windows 11 21h2 | ||
Microsoft Windows Server 2022 | ||
Microsoft .NET Framework | =4.8.1 | |
Microsoft Windows 11 22h2 | ||
Microsoft Windows 11 22h2 | ||
Microsoft Windows 11 23h2 | ||
Microsoft Windows 11 23h2 | ||
Microsoft .NET Framework | =3.5.1 | |
Microsoft Windows Server 2008 | =r2-sp1 | |
Microsoft Windows Server 2008 | =r2-sp1 | |
Microsoft Windows 10 1607 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36560 is an ASP.NET Security Feature Bypass Vulnerability.
The .NET Framework versions 3.5, 4.8, 4.6.2, 4.7, 4.7.1, 4.7.2, and 2.0 are affected by CVE-2023-36560.
CVE-2023-36560 has a severity level of 8.8, which is considered high.
To fix CVE-2023-36560, you should apply the patches provided by Microsoft for the affected versions of the .NET Framework.
You can find more information about CVE-2023-36560 on the Microsoft Security Response Center website.