Microsoft ASP.NET CVE-2018-8171 Security Feature Bypass Vulnerability

description-logoDescription

A Security Feature Bypass vulnerability exists in ASP.NET when the number of incorrect login attempts is not validated.

affected-products-logoAffected Applications

ASP.NET Core 1.0
ASP.NET Core 1.1
ASP.NET Core 2.0
ASP.NET MVC 5.2 on Microsoft Visual Studio 2013 Update 5
ASP.NET MVC 5.2 on Microsoft Visual Studio 2015 Update 3
ASP.NET Web Pages 3.2.3 on Microsoft Visual Studio 2013 Update 5
ASP.NET Web Pages 3.2.3 on Microsoft Visual Studio 2015 Update 3

CVE References

CVE-2018-8171