CVE-2022-41064

CVSS 3.1 Score 5.8 of 10 (medium)

Details

Published Nov 9, 2022
Updated: Jan 2, 2025

Summary

CVE-2022-41064 is a vulnerability affecting the .NET Framework, allowing an attacker to disclose sensitive information. This issue arises due to an inadequately protected function, which, when triggered, unintentionally reveals data that should have been kept confidential. The impact of this vulnerability includes potential exposure of internal system details or application logic, posing a risk to data security and system integrity. Microsoft has released a patch to address this issue, and it is recommended that affected systems be updated promptly to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft NuGet
  • Microsoft .NET Framework

Affected Vendors

  • Microsoft