<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 10:56:57 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-02907</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-02907</link>
      <description>bdu:2023-02907</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-02907</guid>
    </item>
    <item>
      <title>BIT-dotnet-2023-28260 — .NET DLL Hijacking Remote Code Execution Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/bit-dotnet-2023-28260</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: dotnet&lt;/p&gt;
&lt;p&gt;.NET DLL Hijacking Remote Code Execution Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: dotnet&lt;/p&gt;
&lt;p&gt;.NET DLL Hijacking Remote Code Execution Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-dotnet-2023-28260</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0307 — Une vulnérabilité a été corrigée dans &lt;span class="textit"&gt;Microsoft
.Net&lt;/span&gt;. Elle permet à un attaquant de provoqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0307</link>
      <description>certfr-2023-avi-0307</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0307</guid>
    </item>
    <item>
      <title>CLEANSTART-2024-GL32530 — .NET DLL Hijacking Remote Code Execution Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2024-gl32530</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: dotnet6-build, CleanStart: dotnet6-runtime&lt;/p&gt;
&lt;p&gt;CVE-2023-28260 affects multiple packages. . See references for individual vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: dotnet6-build, CleanStart: dotnet6-runtime&lt;/p&gt;
&lt;p&gt;CVE-2023-28260 affects multiple packages. . See references for individual vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2024-gl32530</guid>
    </item>
    <item>
      <title>cnvd-2023-86589</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-86589</link>
      <description>cnvd-2023-86589</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-86589</guid>
    </item>
    <item>
      <title>EUVD-2026-322552</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-322552</link>
      <description>EUVD-2026-322552</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-322552</guid>
    </item>
    <item>
      <title>fkie_cve-2023-28260</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-28260</link>
      <description>&lt;p&gt;.NET DLL Hijacking Remote Code Execution Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;.NET DLL Hijacking Remote Code Execution Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-28260</guid>
    </item>
    <item>
      <title>GHSA-w4m3-43gp-x8hx — .NET Remote Code Execution vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-w4m3-43gp-x8hx</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: Microsoft.NetCore.App.Runtime.win-arm, NuGet: Microsoft.NetCore.App.Runtime.win-arm64, NuGet: Microsoft.NetCore.App.Runtime.win-x86, NuGet: Microsoft.NetCore.App.Runtime.win-x64&lt;/p&gt;
&lt;p&gt;# Microsoft Security Advisory CVE-2023-28260: .NET Remote Code Execution Vulnerability&lt;/p&gt;
&lt;p&gt;## &amp;lt;a name=&amp;#34;executive-summary&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;Executive summary&lt;/p&gt;
&lt;p&gt;Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 7.0 and .NET 6.0. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.&lt;/p&gt;
&lt;p&gt;A vulnerability exists in .NET running on Windows where a runtime DLL can be loaded from an unexpected location, resulting in remote code execution.&lt;/p&gt;
&lt;p&gt;## Announcement&lt;/p&gt;
&lt;p&gt;Announcement for this issue can be found at https://github.com/dotnet/announcements/issues/250&lt;/p&gt;
&lt;p&gt;### &amp;lt;a name=&amp;#34;mitigation-factors&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;Mitigation factors&lt;/p&gt;
&lt;p&gt;Microsoft has not identified any mitigating factors for this vulnerability.&lt;/p&gt;
&lt;p&gt;## &amp;lt;a name=&amp;#34;affected-software&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;Affected software&lt;/p&gt;
&lt;p&gt;* Any .NET 7.0 application running on .NET 7.0.4 or earlier.
* Any .NET 6.0 application running on .NET 6.0.15 or earlier.&lt;/p&gt;
&lt;p&gt;## Advisory FAQ&lt;/p&gt;
&lt;p&gt;### &amp;lt;a name=&amp;#34;how-affected&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;How do I know if I am affected?&lt;/p&gt;
&lt;p&gt;If you have a runtime or SDK with a version listed, or an affected package listed in [affected software](#affected-software), you&amp;#39;re exposed to the vulnerability.&lt;/p&gt;
&lt;p&gt;### &amp;lt;a name=&amp;#34;how-fix&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;How do I fix the issue?&lt;/p&gt;
&lt;p&gt;* To fix the issue please install the latest version of .NET 6.0 or .NET 7.0. If you have installed one or more .NET SDKs through Visual Studio, Visual Studio will prompt you to update Visual Studio, which will also update your .NET  SDKs.
* If y…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: Microsoft.NetCore.App.Runtime.win-arm, NuGet: Microsoft.NetCore.App.Runtime.win-arm64, NuGet: Microsoft.NetCore.App.Runtime.win-x86, NuGet: Microsoft.NetCore.App.Runtime.win-x64&lt;/p&gt;
&lt;p&gt;# Microsoft Security Advisory CVE-2023-28260: .NET Remote Code Execution Vulnerability&lt;/p&gt;
&lt;p&gt;## &amp;lt;a name=&amp;#34;executive-summary&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;Executive summary&lt;/p&gt;
&lt;p&gt;Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 7.0 and .NET 6.0. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.&lt;/p&gt;
&lt;p&gt;A vulnerability exists in .NET running on Windows where a runtime DLL can be loaded from an unexpected location, resulting in remote code execution.&lt;/p&gt;
&lt;p&gt;## Announcement&lt;/p&gt;
&lt;p&gt;Announcement for this issue can be found at https://github.com/dotnet/announcements/issues/250&lt;/p&gt;
&lt;p&gt;### &amp;lt;a name=&amp;#34;mitigation-factors&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;Mitigation factors&lt;/p&gt;
&lt;p&gt;Microsoft has not identified any mitigating factors for this vulnerability.&lt;/p&gt;
&lt;p&gt;## &amp;lt;a name=&amp;#34;affected-software&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;Affected software&lt;/p&gt;
&lt;p&gt;* Any .NET 7.0 application running on .NET 7.0.4 or earlier.
* Any .NET 6.0 application running on .NET 6.0.15 or earlier.&lt;/p&gt;
&lt;p&gt;## Advisory FAQ&lt;/p&gt;
&lt;p&gt;### &amp;lt;a name=&amp;#34;how-affected&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;How do I know if I am affected?&lt;/p&gt;
&lt;p&gt;If you have a runtime or SDK with a version listed, or an affected package listed in [affected software](#affected-software), you&amp;#39;re exposed to the vulnerability.&lt;/p&gt;
&lt;p&gt;### &amp;lt;a name=&amp;#34;how-fix&amp;#34;&amp;gt;&amp;lt;/a&amp;gt;How do I fix the issue?&lt;/p&gt;
&lt;p&gt;* To fix the issue please install the latest version of .NET 6.0 or .NET 7.0. If you have installed one or more .NET SDKs through Visual Studio, Visual Studio will prompt you to update Visual Studio, which will also update your .NET  SDKs.
* If y…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-w4m3-43gp-x8hx</guid>
    </item>
    <item>
      <title>gsd-2023-28260</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-28260</link>
      <description>gsd-2023-28260</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-28260</guid>
    </item>
    <item>
      <title>ICSA-23-320-12 — Siemens PNI</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-320-12</link>
      <description>&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability. zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference). NuGet Client Elevation of Privilege Vulnerability. .NET and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET DLL Hijacking Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;.NET and Visual Studio Information Disclosure Vulnerability. zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference). NuGet Client Elevation of Privilege Vulnerability. .NET and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability .NET DLL Hijacking Remote Code Execution Vulnerability .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Elevation of Privilege Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-320-12</guid>
    </item>
    <item>
      <title>msrc_CVE-2023-28260 — .NET DLL Hijacking Remote Code Execution Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2023-28260</link>
      <description>msrc_CVE-2023-28260</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2023-28260</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-28260</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-28260</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: dotnet6&lt;/p&gt;
&lt;p&gt;.NET DLL Hijacking Remote Code Execution Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: dotnet6&lt;/p&gt;
&lt;p&gt;.NET DLL Hijacking Remote Code Execution Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-28260</guid>
    </item>
  </channel>
</rss>
