QID 375799
Date Published: 2021-08-16
QID 375799: PowerShell Core Multiple .NET Vulnerabilities
PowerShell Core is a cross-platform automation and configuration tool/framework that works well with your existing tools and is optimized for dealing with structured data, REST APIs, and object models.
A denial of service and an information disclosure vulnerability exists in .NET 5.0, .NET Core 3.1 and .NET Core 2.1 where .NET (Core).
Affected Versions:
PowerShell Version 7.0 Prior to 7.0.7
PowerShell Version 7.1 Prior to 7.1.4
QID Detection Logic: (Authenticated)
Operating System: Windows
The QID checks for vulnerable version of file pwsh.exe and QID checks for vulnerable version of PowerShell Core by running command pwsh --version on linux systems.
NOTE: The Windows check will only work for msi installations.
Successful exploitation of the vulnerability may allow an attacker to perform denial of service and information disclosure vulnerability on target machine..
- CVE-2021-26423 -
github.com/PowerShell/Announcements/issues/25 - CVE-2021-34485 -
github.com/PowerShell/Announcements/issues/24
CVEs related to QID 375799
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-26423 |
|
||
| CVE-2021-34485 |
|