CVE Database
/

CVE-2019-0757

Back to search

CVE-2019-0757

Published: Apr 9, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify a NuGet package's folder structure, aka 'NuGet Package Manager Tampering Vulnerability'.

VendorProductVersions

Microsoft

Microsoft Visual Studio

affected
2017 for Mac

Microsoft

.NET Core SDK

affected
1.1 on .NET Core 1.0
affected
2.1.500 on .NET Core 2.1
affected
2.2.100 on .NET Core 2.2
affected
1.1 on .NET Core 1.1

Microsoft

Nuget

affected
4.3.1
affected
4.4.2
affected
4.5.2
affected
4.6.3
affected
4.7.2

+2 more versions

Microsoft

Mono Framework

affected
5.18.0.223
affected
5.20.0

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now