New Search

.NET Framework Security Feature Bypass Vulnerability - CVE-2018-8356

oval:org.cisecurity:def:5275

A security feature bypass vulnerability exists when Microsoft .NET Framework components do not correctly validate certificates aka ".NET Framework Security Feature Bypass Vulnerability." This affects .NET Framework 4.7.2 Microsoft .NET Framework 3.0 Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 ASP.NET Core 1.1 Microsoft .NET Framework 4.5.2 ASP.NET Core 2.0 ASP.NET Core 1.0 .NET Core 1.1 Microsoft .NET Framework 3.5 Microsoft .NET Framework 3.5.1 Microsoft .NET Framework 4.6/4.6.1/4.6.2 .NET Core 1.0 .NET Core 2.0 Microsoft .NET Framework 4.6 Microsoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1/4.7.1/4.7.2 Microsoft .NET Framework 4.7.2.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows Server 2016
  • Microsoft Windows Server 2012 R2
  • Microsoft Windows 10
  • Microsoft Windows 8
  • Microsoft Windows Server 2012
  • Microsoft Windows Server 2008
  • Microsoft Windows Server 2008 R2
  • Microsoft Windows 7
Class:
vulnerability
Reference(s):
  • CVE-2018-8356
Product(s):
  • Microsoft .NET Framework 4.0
  • Microsoft .NET Framework 4.5
  • Microsoft .NET Framework 4.7
  • Microsoft .NET Framework 3.5.1
  • Microsoft .NET Framework 4.6
  • Microsoft .NET Framework 3.5
  • Microsoft .NET Framework 3.0
  • Microsoft .NET Framework 2.0