CVE-2024-43484
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
Scoring
- Severity
- HIGH
- CVSS base score
- 7.5
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
- EPSS probability
- 2.94%
- CWE
- CWE-407, CWE-789
- Published
- 2024-10-08
- Last modified
- 2026-08-19
Affected products
- Microsoft PowerShell 7.2
- Microsoft PowerShell 7.4
- Microsoft Microsoft Visual Studio 2022 version 17.6
- Microsoft Microsoft Visual Studio 2022 version 17.8
- Microsoft Microsoft Visual Studio 2022 version 17.10
- Microsoft Microsoft Visual Studio 2022 version 17.11
- Microsoft .NET 6.0
- Microsoft .NET 8.0
Weakness type
Related vulnerabilities
- CVE-2022-36021 — Redis string pattern matching can be abused to achieve Denial of Service
- CVE-2026-34573 — Parse Server: GraphQL complexity validator exponential fragment traversal DoS
- CVE-2025-64460 — Potential denial-of-service vulnerability in XML serializer text extraction
- CVE-2025-64458 — Potential denial-of-service vulnerability in HttpResponseRedirect and HttpResponsePermanentRedirect on Windows
- CVE-2026-1285 — Potential denial-of-service vulnerability in django.utils.text.Truncator HTML methods
- CVE-2025-14550 — Potential denial-of-service vulnerability via repeated headers when using ASGI
- CVE-2026-3276 — Potential DoS via quadratic complexity in unicodedata.normalize()
- CVE-2024-8233 — Inefficient Algorithmic Complexity in GitLab