CVE-2022-41064
CVSS 3.1 Score 5.8 of 10 (medium)
Details
Summary
CVE-2022-41064 is a vulnerability affecting the .NET Framework, allowing an attacker to disclose sensitive information. This issue arises due to an inadequately protected function, which, when triggered, unintentionally reveals data that should have been kept confidential. The impact of this vulnerability includes potential exposure of internal system details or application logic, posing a risk to data security and system integrity. Microsoft has released a patch to address this issue, and it is recommended that affected systems be updated promptly to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft NuGet
- Microsoft .NET Framework
Affected Vendors
- Microsoft