Elevation of Privilege Vulnerability in ASP.NET Core Web Applications by Microsoft
CVE-2019-1302
What is CVE-2019-1302?
An elevation of privilege vulnerability occurs in ASP.NET Core web applications when the project templates fail to properly sanitize web requests. This flaw allows an attacker to potentially execute unauthorized actions by manipulating request parameters. Developers using these vulnerable templates need to adopt secure coding practices to mitigate risks and ensure that input validation and data sanitization processes are robust. Regular updates and monitoring for security patches are essential to maintain application integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
ASP.NET Core 2.1
ASP.NET Core 2.2
ASP.NET Core 3.0
References
EPSS Score
9% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved