VendorsMicrosoft.net_framework3.5.1
Vulnerabilities

Microsoft .net Framework 3.5.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

122CVEs
CVE-2014-4122
Microsoft .NET Framework 2.0 SP2, 3.5, and 3.5.1 omits the ASLR protection mechanism, which allows remote attackers to obtain potentially sensitive information about memory addresses by leveraging the predictability of an executable image's location, aka ".NET ASLR Vulnerability."
Published 2014-10-15 · Modified
4.3EPSS 0.131
CVE-2015-1648
ASP.NET in Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2, when the customErrors configuration is disabled, allows remote attackers to obtain sensitive configuration-file information via a crafted request, aka "ASP.NET Information Disclosure Vulnerability."
Published 2015-04-14 · Modified
2.6EPSS 0.346
← Prev4 / 4