Rewterz
Rewterz Threat Alert – BlackCat Ransomware – Active IOCs
November 9, 2022
Rewterz
Rewterz Threat Advisory – CVE-2022-39327 – Microsoft Azure CLI Vulnerability
November 9, 2022

Rewterz Threat Advisory – CVE-2022-41064 – Microsoft .NET Framework Vulnerability

Severity

High

Analysis Summary

CVE-2022-41064

Microsoft .NET Framework could allow a remote authenticated attacker to obtain sensitive information. By sending a specially-crafted request, an attacker could exploit this vulnerability to obtain sensitive information, and use this information to launch further attacks against the affected system.

Impact

Information Disclosure

Indicators Of Compromise

CVE

  • CVE-2022-41064

Affected Vendors

Microsoft

Affected Products

  • Microsoft .NET Framework 3.5 on Windows Server 2012 R2 (Server Core installation)
  • Microsoft .NET Framework 3.5 on Windows Server 2012 R2
  • Microsoft .NET Framework 3.5 on Windows Server 2012 (Server Core installation)
  • Microsoft .NET Framework 3.5 on Windows Server 2012
  • Microsoft .NET Framework 3.5 on Windows 8.1 for X64-based systems
  • Microsoft .NET Framework 3.5 on Windows 8.1 for 32-bit systems

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security TechCenter