Lucene search

K
cveMicrosoftCVE-2024-21312
HistoryJan 09, 2024 - 6:15 p.m.

CVE-2024-21312

2024-01-0918:15:55
CWE-20
microsoft
web.nvd.nist.gov
125
.net
framework
dos
vulnerability
cve-2024-21312

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.7

Confidence

High

EPSS

0.001

Percentile

28.1%

.NET Framework Denial of Service Vulnerability

Affected configurations

Nvd
Vulners
Node
microsoft.net_frameworkMatch3.5-
AND
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
Node
microsoft.net_frameworkMatch3.5-
OR
microsoft.net_frameworkMatch4.8.1
AND
microsoftwindows_10_21h2Match-
OR
microsoftwindows_10_22h2Match-
OR
microsoftwindows_11_21h2Match-
OR
microsoftwindows_11_22h2Match-
OR
microsoftwindows_11_23h2Match-
OR
microsoftwindows_server_2022Match-
Node
microsoft.net_frameworkMatch4.6.2
OR
microsoft.net_frameworkMatch4.7
OR
microsoft.net_frameworkMatch4.7.1
OR
microsoft.net_frameworkMatch4.7.2
AND
microsoftwindows_server_2008Matchr2sp1x64
OR
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
Node
microsoft.net_frameworkMatch3.5-
OR
microsoft.net_frameworkMatch4.7.2
AND
microsoftwindows_10_1607Match-
OR
microsoftwindows_10_1809Match-
OR
microsoftwindows_server_2016Match-
OR
microsoftwindows_server_2019Match-
Node
microsoft.net_frameworkMatch4.8
AND
microsoftwindows_10_1607Match-
OR
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
OR
microsoftwindows_server_2016Match-
Node
microsoft.net_frameworkMatch3.5-
OR
microsoft.net_frameworkMatch4.8
AND
microsoftwindows_10_1809Match-
OR
microsoftwindows_10_21h2Match-
OR
microsoftwindows_10_22h2Match-
OR
microsoftwindows_11_21h2Match-
OR
microsoftwindows_server_2019Match-
OR
microsoftwindows_server_2022Match-
VendorProductVersionCPE
microsoft.net_framework3.5cpe:2.3:a:microsoft:.net_framework:3.5:-:*:*:*:*:*:*
microsoftwindows_server_2012-cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*
microsoftwindows_server_2012r2cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*
microsoft.net_framework4.8.1cpe:2.3:a:microsoft:.net_framework:4.8.1:*:*:*:*:*:*:*
microsoftwindows_10_21h2-cpe:2.3:o:microsoft:windows_10_21h2:-:*:*:*:*:*:*:*
microsoftwindows_10_22h2-cpe:2.3:o:microsoft:windows_10_22h2:-:*:*:*:*:*:*:*
microsoftwindows_11_21h2-cpe:2.3:o:microsoft:windows_11_21h2:-:*:*:*:*:*:*:*
microsoftwindows_11_22h2-cpe:2.3:o:microsoft:windows_11_22h2:-:*:*:*:*:*:*:*
microsoftwindows_11_23h2-cpe:2.3:o:microsoft:windows_11_23h2:-:*:*:*:*:*:*:*
microsoftwindows_server_2022-cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 201

CNA Affected

[
  {
    "vendor": "Microsoft",
    "product": "Microsoft .NET Framework 3.5 AND 4.8.1",
    "cpes": [
      "cpe:2.3:a:microsoft:.net:4.8.1:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows 11 Version 23H2 for x64-based Systems",
      "Windows 11 Version 23H2 for ARM64-based Systems",
      "Windows Server 2022",
      "Windows Server 2022 (Server Core installation)",
      "Windows 11 version 21H2 for x64-based Systems",
      "Windows 11 version 21H2 for ARM64-based Systems",
      "Windows 10 Version 21H2 for 32-bit Systems",
      "Windows 10 Version 21H2 for ARM64-based Systems",
      "Windows 10 Version 21H2 for x64-based Systems",
      "Windows 11 Version 22H2 for ARM64-based Systems",
      "Windows 11 Version 22H2 for x64-based Systems",
      "Windows 10 Version 22H2 for x64-based Systems",
      "Windows 10 Version 22H2 for ARM64-based Systems",
      "Windows 10 Version 22H2 for 32-bit Systems"
    ],
    "versions": [
      {
        "version": "4.8.1",
        "lessThan": "4.8.09214.01",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Microsoft .NET Framework 4.8",
    "cpes": [
      "cpe:2.3:a:microsoft:.net:4.8:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows 10 Version 1607 for 32-bit Systems",
      "Windows 10 Version 1607 for x64-based Systems",
      "Windows Server 2016",
      "Windows Server 2016 (Server Core installation)",
      "Windows Server 2012",
      "Windows Server 2012 (Server Core installation)",
      "Windows Server 2012 R2",
      "Windows Server 2012 R2 (Server Core installation)"
    ],
    "versions": [
      {
        "version": "4.8.0",
        "lessThan": "4.8.04690.02",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Microsoft .NET Framework 3.5 AND 4.8",
    "cpes": [
      "cpe:2.3:a:microsoft:.net:4.8:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows 10 Version 1809 for 32-bit Systems",
      "Windows 10 Version 1809 for x64-based Systems",
      "Windows Server 2019",
      "Windows Server 2019 (Server Core installation)",
      "Windows Server 2022",
      "Windows Server 2022 (Server Core installation)",
      "Windows 11 version 21H2 for x64-based Systems",
      "Windows 11 version 21H2 for ARM64-based Systems",
      "Windows 10 Version 21H2 for 32-bit Systems",
      "Windows 10 Version 21H2 for ARM64-based Systems",
      "Windows 10 Version 21H2 for x64-based Systems",
      "Windows 10 Version 22H2 for x64-based Systems",
      "Windows 10 Version 22H2 for ARM64-based Systems",
      "Windows 10 Version 22H2 for 32-bit Systems"
    ],
    "versions": [
      {
        "version": "4.8.0",
        "lessThan": "4.8.04690.02",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Microsoft .NET Framework 3.5 AND 4.7.2",
    "cpes": [
      "cpe:2.3:a:microsoft:.net:4.7.2:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows 10 Version 1809 for 32-bit Systems",
      "Windows 10 Version 1809 for x64-based Systems",
      "Windows 10 Version 1809 for ARM64-based Systems",
      "Windows Server 2019",
      "Windows Server 2019 (Server Core installation)",
      "Windows 10 Version 1607 for 32-bit Systems",
      "Windows 10 Version 1607 for x64-based Systems",
      "Windows Server 2016",
      "Windows Server 2016 (Server Core installation)"
    ],
    "versions": [
      {
        "version": "4.7.0",
        "lessThan": "4.7.04081.03",
        "versionType": "custom",
        "status": "affected"
      },
      {
        "version": "4.7.0",
        "lessThan": "10.0.14393.6614",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2",
    "cpes": [
      "cpe:2.3:a:microsoft:.net:4.7.2:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows Server 2008 R2 for x64-based Systems Service Pack 1",
      "Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)",
      "Windows Server 2012",
      "Windows Server 2012 (Server Core installation)",
      "Windows Server 2012 R2",
      "Windows Server 2012 R2 (Server Core installation)"
    ],
    "versions": [
      {
        "version": "4.7.0",
        "lessThan": "4.7.04081.02",
        "versionType": "custom",
        "status": "affected"
      },
      {
        "version": "4.7.0",
        "lessThan": "4.7.04081.03",
        "versionType": "custom",
        "status": "affected"
      },
      {
        "version": "4.7.0",
        "lessThan": "3.0.50727.8976",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Microsoft .NET Framework 3.5",
    "cpes": [
      "cpe:2.3:a:microsoft:.net:3.5:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows Server 2012",
      "Windows Server 2012 (Server Core installation)",
      "Windows Server 2012 R2",
      "Windows Server 2012 R2 (Server Core installation)"
    ],
    "versions": [
      {
        "version": "3.5.0",
        "lessThan": "3.0.50727.8976",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  }
]

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.7

Confidence

High

EPSS

0.001

Percentile

28.1%