CNNVD-202506-1553 Information

CNNVD ID

CNNVD-202506-1553

CVE-2025-47959

  • CNNVD Published: 2025-06-10

Description (Chinese)

Microsoft Visual Studio是美国微软(Microsoft)公司的一款开发工具套件系列产品,也是一个基本完整的开发工具集,它包括了整个软件生命周期中所需要的大部分工具。 Microsoft Visual Studio存在命令注入漏洞。攻击者利用该漏洞可以远程执行代码。以下产品和版本受到影响:Microsoft Visual Studio 2022 version 17.12,Microsoft Visual Studio 2022 version 17.8,Microsoft Visual Studio 2022 version 17.10,Microsoft Visual Studio 2022 version 17.14。

Description (English)

Microsoft Vital Studio is a product of the Microsoft (MS) United States development tool package series and is a basic complete development tool set that includes most of the tools required throughout the software life cycle. Microsoft Visa Studio has ordered a loophole. The attackers used the loophole to implement the code remotely. The following products and versions have been affected: Microsoft Vital Studio 2022 version 17.12, Microsoft Vital Studio 2022 version 17.8, Microsoft Vital Studio 2022 version 17.10 and Microsoft Vital Studio 2022 version 17.14.

Hazard Level

Medium

Vulnerability Type

命令注入

Affected Vendor

微软

Published

2025-06-10

Last Modified

2026-02-24

References

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47959

Patch

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47959

Share on: