Weak authentication in EOL ASP.NET Core allows an unauthorized attacker to elevate privileges over a network. NOTE: This CVE affects only End Of Life (EOL) software components. The vendor, Microsoft, has indicated there will be no future updates nor support provided upon inquiry.
https://www.herodevs.com/vulnerability-directory/cve-2025-7326
https://www.cve.org/CVERecord?id=CVE-2025-24070
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-24070