Skip to content
VulniPulse
High7.8Microsoft Server

High [CVE-2026-70354] .NET Core Remote Code Execution Vulnerability

This high-severity Microsoft Server advisory covers CVE-2026-70354 affecting Microsoft .NET Framework 3.5 on Windows Server 2012 R2, Microsoft .NET Framework 3.5 AND 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2016, Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2019.

CVE-2026-70354 Published Aug 11, 2026
Affected products & platforms
Microsoft ServerWindows Server
Open vendor advisory

Android app · Google Play

Monitor future Microsoft Server CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery

Summary

.NET Core Remote Code Execution Vulnerability

Affected products named by the advisory: Microsoft.NET Framework 3.5 on Windows Server 2012; Microsoft.NET Framework 3.5 on Windows Server 2012 R2; Microsoft.NET Framework 3.5 AND 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2016; Microsoft.NET Framework 3.5 AND 4.7.2 on Windows Server 2019; and 4 more.

Affected products named by the advisory: Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2019; Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2022; Microsoft .NET Framework 3.5 AND 4.8.1 on Windows Server 2022; Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2012 R2.

Affected versions

No affected-version range was extracted from the source record. The vendor advisory is authoritative — check it before change work.

Official advisory · high-confidence parse· fetched 57 minutes ago·verify at source

Fixed versions
  • KB5120418 (build 2.0.50727.8984 & 3.0.30729.8980 & 4.7.4144.0)
  • KB5120716 (build 2.0.50727.8984 & 3.0.30729.8980)
  • KB5120747 (build 2.0.50727.9183 & 3.0.30729.9169)
  • KB5120695 (build 2.0.50727.8984 & 3.0.30729.8980)
  • KB5120703 (build 2.0.50727.9070 & 3.0.30729.9068 & 4.8.4805.0)
  • KB5120698 (build 2.0.50727.9070 & 3.0.30729.9068 & 4.7.4144.0)
  • KB5120701 (build 2.0.50727.9183 & 3.0.30729.9169 & 4.8.4805.0)
  • KB5120705 (build 2.0.50727.9183 & 3.0.30729.9169 & 4.8.4805.0)

Official advisory · high-confidence parse· fetched 57 minutes ago·verify at source

Mitigation checklist

Recommended fix / mitigation
  • Install the applicable security update for your platform: KB5120418, KB5120716, KB5120747, KB5120695, KB5120703, KB5120698 (see the Microsoft Update Catalog).

Official advisory · high-confidence parse· fetched 57 minutes ago·verify at source

Discussion(0)

No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.

Sign in to join the discussion.