CVE-2024-29059CISA KEV
Microsoft .NET Framework Information Disclosure Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft .NET Framework contains an information disclosure vulnerability that exposes the ObjRef URI to an attacker, ultimately enabling remote code execution.
- Product
- .NET Framework
- Added to KEV
- 4 Feb 2025
- Federal remediation due
- 25 Feb 2025
- Known ransomware use
- Not reported