.NET Core
CVE-2018-8416 — .NET Core Tampering Vulnerability
Executive Summary
A tampering vulnerability exists when .NET Core improperly handles specially crafted files. An attacker who successfully exploited this vulnerability could write arbitrary files and directories to certain locations on a vulnerable system. However, an attacker would have limited control over the destination of the files and directories. To exploit the vulnerability, an attacker must send a specially crafted file to a vulnerable system. The security update fixes the vulnerability by ensuring .NET Core properly handles files.
Overview
Moderate
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
EPSS Score
0.07258
probability of exploitation in the next 30 days
0.93784 percentile - updated 2026-08-14
View on FIRST.org
Affected Products
3 affected products
| Product | KB Article | Severity | Impact | Restart Required |
|---|---|---|---|---|
| .NET Core 2.1 | Release Notes (Security Update) |
Moderate | Tampering | Maybe |
| PowerShell Core 6.1 | Release Notes (Security Update) |
Moderate | Tampering | Maybe |
| PowerShell Core 6.2 | Release Notes (Security Update) |
Moderate | Tampering | Maybe |
Patches
1 patch
| Article | Type | Restart |
|---|---|---|
Release Notes |
Security Update | Maybe |
Exploits & PoC
No public exploit or PoC has been linked for this CVE yet. When available, references are sourced from public repositories and may be unverified or non-functional — review carefully before use.
Detection Rules
No public Sigma or Nuclei detection rule has been mapped to this CVE yet. Coverage is concentrated on exploited / high-profile vulnerabilities; check SigmaHQ for updates.
Acknowledgments
References
On This Page