Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.811827
Category:Windows : Microsoft Bulletins
Title:Microsoft .NET Framework Remote Code Execution Vulnerability (KB4040973)
Summary:This host is missing a critical security; update according to Microsoft Security Updates KB4040973.
Description:Summary:
This host is missing a critical security
update according to Microsoft Security Updates KB4040973.

Vulnerability Insight:
Flaw exists as when Microsoft .NET Framework
processes untrusted input.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to take control of an affected system. An attacker could then install
programs, view, change, or delete data, or create new accounts with full user
rights. Users whose accounts are configured to have fewer user rights on the
system could be less impacted than users who operate with administrative user
rights.

Affected Software/OS:
- Microsoft .NET Framework 4.6/4.6.1

- Microsoft .NET Framework 4.6.2

- Microsoft .NET Framework 4.7

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-8759
BugTraq ID: 100742
http://www.securityfocus.com/bid/100742
https://www.exploit-db.com/exploits/42711/
https://github.com/GitHubAssessments/CVE_Assessments_01_2020
https://github.com/bhdresh/CVE-2017-8759
https://github.com/nccgroup/CVE-2017-8759
http://www.securitytracker.com/id/1039324
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.