Project Subscriptions
| Vendors | Products |
|---|---|
|
Microsoft
Subscribe
|
.net
Subscribe
.net Framework
Subscribe
Windows
Subscribe
Windows 10 1607
Subscribe
Windows 10 1809
Subscribe
Windows 10 21h2
Subscribe
Windows 10 22h2
Subscribe
Windows 11 23h2
Subscribe
Windows 11 24h2
Subscribe
Windows 11 25h2
Subscribe
Windows 11 26h1
Subscribe
Windows Server 2012
Subscribe
Windows Server 2016
Subscribe
Windows Server 2022
Subscribe
Windows Server 2025
Subscribe
|
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-8x9c-mqxv-q2pp | Microsoft Security Advisory CVE-2026-35433 – .NET Elevation of Privilege Vulnerability |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. |
Tue, 09 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. |
Fri, 05 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. |
Mon, 01 Jun 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally. |
Thu, 28 May 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 13 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 12 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally. | |
| Title | .NET Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft .net |
|
| Weaknesses | CWE-190 CWE-20 |
|
| CPEs | cpe:2.3:a:microsoft:.net:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft .net |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-08-10T15:14:00.578Z
Reserved: 2026-04-02T19:21:11.804Z
Link: CVE-2026-35433
Updated: 2026-05-13T10:01:42.300Z
Status : Modified
Published: 2026-05-12T18:17:13.710
Modified: 2026-07-15T02:20:42.493
Link: CVE-2026-35433
OpenCVE Enrichment
Updated: 2026-06-18T21:15:03Z
Github GHSA