ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to the ASP.NET Core project templates, aka "ASP.NET Core Elevation Of Privilege Vulnerability". This CVE is unique from CVE-2018-0808.
http://www.securitytracker.com/id/1040151
http://www.securityfocus.com/bid/102377
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0784
Source: Mitre, NVD
Published: 2018-01-10
Updated: 2024-11-21
Base Score: 6.8
Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P
Severity: Medium
Base Score: 8.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity: High
EPSS: 0.06523