MEDIUM · 5.0

CVE-2023-21722

.NET Framework Denial of Service Vulnerability

Vulnerability Description

.NET Framework Denial of Service Vulnerability

CVSS Score

5.0

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
Microsoft.Net Framework3.5
MicrosoftWindows 10 1607-
MicrosoftWindows 10 1809-
MicrosoftWindows Server 2016-
MicrosoftWindows Server 2019-
MicrosoftWindows 10 20H2All versions
MicrosoftWindows 10 21H2All versions
MicrosoftWindows 10 22H2All versions
MicrosoftWindows 11 21H2All versions
MicrosoftWindows Server 2022-
MicrosoftWindows 11 22H2All versions
MicrosoftWindows Server 2012-
MicrosoftWindows Server 2008r2
MicrosoftWindows 10 1507All versions
MicrosoftWindows 10 1511All versions
MicrosoftWindows 10 1703All versions
MicrosoftWindows 10 1709All versions
MicrosoftWindows 10 1803All versions
MicrosoftWindows 10 1903All versions
MicrosoftWindows 10 1909All versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-21722?

CVE-2023-21722 is a vulnerability with a CVSS score of 5.0 (MEDIUM). .NET Framework Denial of Service Vulnerability

How severe is CVE-2023-21722?

CVE-2023-21722 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-21722?

Check the references section above for vendor advisories and patch information. Affected products include: Microsoft .Net Framework, Microsoft Windows 10 1607, Microsoft Windows 10 1809, Microsoft Windows Server 2016, Microsoft Windows Server 2019.