CVE-2017-8700
15.11.2017, 03:29
ASP.NET Core 1.0, 1.1, and 2.0 allow an attacker to bypass Cross-origin Resource Sharing (CORS) configurations and retrieve normally restricted content from a web application, aka "ASP.NET Core Information Disclosure Vulnerability".Enginsight
Vendor | Product | Version |
---|---|---|
microsoft | asp.net_core | 1.0 |
microsoft | asp.net_core | 1.1 |
microsoft | asp.net_core | 2.0 |
𝑥
= Vulnerable software versions
References