CVE-2014-0295
Published · Updated
30Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck.
ssvc Attendepss 14%
from disclosure to weapon
Published on NVDFeb 12
VulnCheckFeb 12
exploitation probability
14%top 4% of all CVEs
observed exploitation
yesVulnCheck
VsaVb7rt.dll in Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not implement the ASLR protection mechanism, which makes it easier for remote attackers to execute arbitrary code via a crafted web site, as exploited in the wild in February 2014, aka "VSAVB7RT ASLR Vulnerability."
Affected products
n/a · n/a