Advertisement
Top
image credit: Pixabay

CISA Adds Microsoft .NET Vulnerability to KEV Catalog Due to Active Exploitation

August 11, 2023

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched security flaw in Microsoft’s .NET and Visual Studio products to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.

Tracked as CVE-2023-38180 (CVSS score: 7.5), the high-severity flaw relates to a case denial-of-service (DoS) impacting .NET and Visual Studio.

It was addressed by Microsoft as part of its August 2023 Patch Tuesday updates shipped earlier this week, tagging it with an “Exploitation More Likely” assessment.

Read More on The Hacker News