Improper link resolution before file access ('link following') in Visual Studio allows an unauthorized attacker to elevate privileges over a network.
2025-07-08T17:16:02.837
2025-07-16T16:40:52.007
Analyzed
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | visual_studio | 2015 | Yes |
Application | microsoft | visual_studio_2017 | < 15.9.75 | Yes |
Application | microsoft | visual_studio_2019 | < 16.11.49 | Yes |
Application | microsoft | visual_studio_2022 | < 17.8.23 | Yes |
Application | microsoft | visual_studio_2022 | < 17.10.17 | Yes |
Application | microsoft | visual_studio_2022 | < 17.12.10 | Yes |
Application | microsoft | visual_studio_2022 | < 17.14.8 | Yes |