CVE-2018-0785

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
10/01/2018
Last modified:
01/02/2018

Description

ASP.NET Core 1.0. 1.1, and 2.0 allow a cross site request forgery vulnerability due to the ASP.NET Core project templates, aka "ASP.NET Core Cross Site Request Forgery Vulnerability".

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:asp.net_core:2.0:*:*:*:*:*:*:*