CVE Published: 15/11/2017 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: microsoft |
Vendor: Microsoft Corporation |
Product: .NET Core Status : PUBLISHED
CVE-2017-11770 Description
.NET Core 1.0, 1.1, and 2.0 allow an unauthenticated attacker to remotely cause a denial of service attack against a .NET Core web application by improperly parsing certificate data. A denial of service vulnerability exists when .NET Core improperly handles parsing certificate data, aka ".NET CORE Denial Of Service Vulnerability".