QID 376165
QID 376165: Microsoft Bot Framework SDK Remote Code Execution (RCE) Vulnerability
The Bot Framework, along with the Azure Bot Service, provides tools to build, test, deploy, and manage intelligent bots, all in one place. The Bot Framework includes a modular and extensible SDK for building bots, as well as tools, templates, and related AI services.
Bot Framework SDK is prone to Remote Code Execution (RCE) Vulnerability.
Affected Software:
Bot Framework SDK for .NET Framework
Successful exploitation allows attacker to execute arbitrary code.
Solution
Users are advised to check CVE-2021-43225 for more information.
Vendor References
- CVE-2021-43225 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2021-43225
CVEs related to QID 376165
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-43225 |
|