PT-2024-5700 · Microsoft+8 · Visual Studio+9

Alex Appleton

+1

·

Published

2024-08-13

·

Updated

2024-12-13

·

CVE-2024-38167

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions .NET and Visual Studio (affected versions not specified)
Description The issue is related to the transmission of credentials in unencrypted form, which could allow a remote attacker to disclose protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Transmission of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:5334
ALSA-2024:5337
ALT-PU-2024-12832
ALT-PU-2024-12835
ALT-PU-2024-12836
ALT-PU-2024-13115
ALT-PU-2024-13119
ALT-PU-2024-13120
ALT-PU-2024-16799
ALT-PU-2024-16800
ALT-PU-2024-16801
BDU:2024-06413
BIT-DOTNET-2024-38167
BIT-DOTNET-SDK-2024-38167
CESA-2024_5337
CVE-2024-38167
GHSA-3R34-R6W3-FQP6
INFSA-2024_5334
INFSA-2024_5337
RHSA-2024:5334
RHSA-2024:5337
RHSA-2024_5334
RHSA-2024_5337
USN-6959-1

Affected Products

.Net Framework
Alt Linux
Almalinux
Centos
Linuxmint
Red Hat
Red Os
Rocky Linux
Ubuntu
Visual Studio