CVE-2019-0657
published 2019-03-05CVE-2019-0657: A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing…
PriorityP432medium5.9CVSS 3.0
AVNACHPRNUINSUCNIHAN
EPSS
4.52%
90.5th percentile
A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'.
Affected
120 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | microsoft_net_framework_2.0 | — | — |
| microsoft | microsoft_net_framework_3.0 | — | — |
| microsoft | microsoft_net_framework_3.0 | — | — |
| microsoft | microsoft_net_framework_3.0 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
| microsoft | microsoft_net_framework_3.5 | — | — |
CVSS provenance
nvdv3.05.9MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_msrc5.9HIGH
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
dotnet: Domain-spoofing attack in System.Uri
vendor_redhat·2019-02-12·CVSS 5.9
CVE-2019-0657 [MEDIUM] CWE-20 dotnet: Domain-spoofing attack in System.Uri
dotnet: Domain-spoofing attack in System.Uri
A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'.
Package: rh-dotnetcore10 (.NET Core 1.0 on Red Hat Enterprise Linux) - Will not fix
Package: rh-dotnetcore11 (.NET Core 1.1 on Red Hat Enterprise Linux) - Will not fix
Package: dotnet (Red Hat Enterprise Linux 8) - Not affected
Microsoft
.NET Framework and Visual Studio Spoofing Vulnerability
vendor_msrc·2019-02-12·CVSS 5.9
CVE-2019-0657 [MEDIUM] .NET Framework and Visual Studio Spoofing Vulnerability
.NET Framework and Visual Studio Spoofing Vulnerability
Description: A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's. An attacker who successfully exploited this vulnerability could use it to bypass security logic intended to ensure that a user-provided URL belonged to a specific hostname or a subdomain of that hostname. This could be used to cause privileged communication to be made to an untrusted service as if it was a trusted service.
To exploit the vulnerability, an attacker must provide a URL string to an application that attempts to verify that the URL belongs to a specific hostname or to a subdomain of that hostname. The application must then make an HTTP request to the attacker-provided URL either directly or by sending a proce
GHSA
Improper Input Validation in .Net Framework API's
ghsa·2022-05-14
CVE-2019-0657 [MEDIUM] CWE-20 Improper Input Validation in .Net Framework API's
Improper Input Validation in .Net Framework API's
A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'.
OSV
Improper Input Validation in .Net Framework API's
osv·2022-05-14
CVE-2019-0657 [MEDIUM] Improper Input Validation in .Net Framework API's
Improper Input Validation in .Net Framework API's
A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'.
Suricata
ET SCADA SEIG SYSTEM 9 - Remote Code Execution
suricata·2018-08-21
CVE-2013-0657 ET SCADA SEIG SYSTEM 9 - Remote Code Execution
ET SCADA SEIG SYSTEM 9 - Remote Code Execution
Rule: alert tcp any any -> $HOME_NET 12397 (msg:"ET SCADA SEIG SYSTEM 9 - Remote Code Execution"; flow:established,to_server; content:"|14 60 00 00 66 66 07 00 10 00 00 00 19 00 00 00 00 00 04 00 00 00 60 00|"; depth:24; content:!"|0d|"; distance:0; content:!"|0a|"; distance:0; content:!"|ff|"; content:!"|00|"; distance:0; reference:url,exploit-db.com/exploits/45218/; reference:cve,2013-0657; classtype:attempted-user; sid:2026003; rev:1; metadata:created_at 2018_08_21, cve CVE_2013_0657, confidence High, signature_severity Major, updated_at 2019_07_26, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T1190, mitre_technique_name Exploit_Public_Facing_Application;)
No public exploits indexed.
http://www.securityfocus.com/bid/106890https://access.redhat.com/errata/RHSA-2019:0349https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0657http://www.securityfocus.com/bid/106890https://access.redhat.com/errata/RHSA-2019:0349https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0657
2019-03-05
Published