CVE Published: 15/10/2014 |
CVE Updated: 06/08/2024 |
CVE Year: 2014 Source: microsoft |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2014-4121 Description
Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2 does not properly parse internationalized resource identifiers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted request to a .NET web application, aka ".NET Framework Remote Code Execution Vulnerability."