A remote code execution vulnerability exists when Microsoft .NET Framework processes input. An attacker who successfully exploited this vulnerability could take control of an affected system.
To exploit the vulnerability, an attacker would need to be able to upload a specially crafted file to a web application.
The security update addresses the vulnerability by correcting how .NET Framework processes input.
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1046 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: microsoft
Published: 2020-08-17T19:12:57
Updated: 2024-05-29T16:33:25.175Z
Reserved: 2019-11-04T00:00:00
Link: CVE-2020-1046
JSON object: View
NVD Information
Status : Modified
Published: 2020-08-17T19:15:14.083
Modified: 2024-01-19T00:15:09.687
Link: CVE-2020-1046
JSON object: View
Redhat Information
No data.
CWE