Microsoft .NET Framework 4.5 does not properly create policy requirements for custom Windows Communication Foundation (WCF) endpoint authentication in certain situations involving passwords over HTTPS, which allows remote attackers to bypass authentication by sending queries to an endpoint, aka "Authentication Bypass Vulnerability."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microsoft
Published: 2013-05-15T01:00:00
Updated: 2024-08-06T14:57:05.151Z
Reserved: 2013-01-12T00:00:00
Link: CVE-2013-1337
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-05-15T03:36:34.420
Modified: 2024-11-21T01:49:23.227
Link: CVE-2013-1337
Redhat
No data.