CVE-2018-8260: Microsoft .NET Framework

High severity, CVSS 8.8. EPSS: 15.5% chance of exploitation in the next 30 days.

A Remote Code Execution vulnerability exists in .NET software when the software fails to check the source markup of a file, aka ".NET Framework Remote Code Execution Vulnerability." This affects .NET Framework 4.7.2, Microsoft .NET Framework 4.7.2.

Affected products

Published 2018-07-11. Last modified 2026-06-17.