Remote Code Execution Vulnerability in Git for Visual Studio
CVE-2019-1352

8.8HIGH

What is CVE-2019-1352?

A remote code execution vulnerability occurs in Git for Visual Studio when the application fails to properly sanitize input. An attacker could exploit this flaw by sending crafted input to the affected software, potentially executing arbitrary code on the target system. Given the nature of the vulnerability, it poses significant risks to users of Git for Visual Studio, emphasizing the necessity for users to apply relevant security updates provided by Microsoft as well as to remain vigilant against potential exploit attempts.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Microsoft Visual Studio 2017 15.0

Microsoft Visual Studio 2017 version 15.9 (includes 15.1 - 15.8) = unspecified

Microsoft Visual Studio 2019 16.0

References

EPSS Score

11% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.