DevSecOps Toolkit

CVE record

CVE-2023-26314

HIGHCVSS 8.8

The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-executable MIME type is associated with an un-sandboxed Mono CLR interpreter.

Vulnerability metadata

Published
2023-02-22T01:45:10.900Z
Modified
2026-05-19T20:46:34.933Z
EPSS
Not available
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

References