Vulnerabilities > Microsoft > NET Framework > 4.6

DATE CVE VULNERABILITY TITLE RISK
2016-02-10 CVE-2016-0047 Information Exposure vulnerability in Microsoft .Net Framework
WinForms in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 allows remote attackers to obtain sensitive information from process memory via crafted icon data, aka "Windows Forms Information Disclosure Vulnerability."
network
low complexity
microsoft CWE-200
7.5
2016-02-10 CVE-2016-0033 Code Injection vulnerability in Microsoft .Net Framework
Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 does not prevent recursive compilation of XSLT transforms, which allows remote attackers to cause a denial of service (performance degradation) via crafted XSLT data, aka ".NET Framework Stack Overflow Denial of Service Vulnerability."
network
low complexity
microsoft CWE-94
7.5