![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-43908 – Visual Studio Code Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-43908
15 Dec 2021 — Visual Studio Code Spoofing Vulnerability Una vulnerabilidad de Suplantación de Identidad en Visual Studio Code • https://github.com/Sudistark/vscode-rce-electrovolt •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-43891 – Visual Studio Code Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-43891
15 Dec 2021 — Visual Studio Code Remote Code Execution Vulnerability Una vulnerabilidad de Ejecución de Código Remota en Visual Studio • https://github.com/parsiya/code-wsl-rce •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-43877 – ASP.NET Core and Visual Studio Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-43877
15 Dec 2021 — ASP.NET Core and Visual Studio Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en ASP.NET Core y Visual Studio • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-43877 •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-42322 – Visual Studio Code Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-42322
10 Nov 2021 — Visual Studio Code Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en Visual Studio Code • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-42322 • CWE-269: Improper Privilege Management •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-42319 – Visual Studio Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-42319
10 Nov 2021 — Visual Studio Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en Visual Studio • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-42319 • CWE-269: Improper Privilege Management •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-42277 – Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-42277
10 Nov 2021 — Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en Diagnostics Hub Standard Collector This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Microsoft Diagnostics Hub Standard Collector Service. By creating a symb... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-42277 • CWE-269: Improper Privilege Management •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-41355 – .NET Core and Visual Studio Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-41355
13 Oct 2021 — .NET Core and Visual Studio Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información en .NET Core y Visual Studio A flaw was found in dotnet, where the System.DirectoryServices.Protocols.LdapConnection sends credentials in plaintext if the Transport Layer Security (TLS) handshake fails. This flaw allows an attacker to intercept sensitive information. The highest threat from this vulnerability is to confidentiality. .NET is a managed-software framework. It implements a subset of ... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-41355 • CWE-319: Cleartext Transmission of Sensitive Information •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-36952 – Visual Studio Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-36952
15 Sep 2021 — Visual Studio Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de Código Remota en Visual Studio This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Visual Studio. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of DDS files. Crafted data in a DDS file can trigger an overflow of a heap-based buffer. An attac... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-36952 • CWE-787: Out-of-bounds Write •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-26437 – Visual Studio Code Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-26437
15 Sep 2021 — Visual Studio Code Spoofing Vulnerability Una Vulnerabilidad de Falsificación de Código de Visual Studio • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26437 •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2021-26434 – Visual Studio Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-26434
15 Sep 2021 — Visual Studio Elevation of Privilege Vulnerability Una Vulnerabilidad de Elevación de Privilegios en Visual Studio This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Visual Studio. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Visual Studio installer. The issue results from incorrect permissions set on a resource used by the installe... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26434 • CWE-732: Incorrect Permission Assignment for Critical Resource •