CVE-2013-1337 Information
Feb 14, 2021
cve
Description
Microsoft .NET Framework 4.5 does not properly create policy requirements for custom Windows Communication Foundation (WCF) endpoint authentication in certain situations involving passwords over HTTPS which allows remote attackers to bypass authentication by sending queries to an endpoint aka \Authentication Bypass Vulnerability.\
Reference
http://www.us-cert.gov/ncas/alerts/TA13-134A https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-040 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A16741
Share on: