AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-3255

HIGH · CVSS 7.5 EPSS 24.66%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-07-13 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2016-3255
Severity
HIGH
CVSS
7.5
EPSS
24.66%
Microsoft

Original NVD Description

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 allows remote attackers to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue, aka ".NET Information Disclosure Vulnerability."