cbcvebase.
CVE-2013-1337
published 2013-05-15

CVE-2013-1337: Microsoft .NET Framework 4.5 does not properly create policy requirements for custom Windows Communication Foundation (WCF) endpoint authentication in certain…

PriorityP358high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
20.63%
97.2th percentile
Microsoft .NET Framework 4.5 does not properly create policy requirements for custom Windows Communication Foundation (WCF) endpoint authentication in certain situations involving passwords over HTTPS, which allows remote attackers to bypass authentication by sending queries to an endpoint, aka "Authentication Bypass Vulnerability."

Affected

1 ranges
VendorProductVersion rangeFixed in
microsoftnet_framework
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.