Microsoft .NET Framework 4.5 does not properly create policy requirements for custom Windows Communication Foundation (WCF) endpoint authentication in certain situations involving passwords over HTTPS, which allows remote attackers to bypass authentication by sending queries to an endpoint, aka "Authentication Bypass Vulnerability."
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2024-08-06T14:57:05.151Z
Reserved: 2013-01-12T00:00:00
Link: CVE-2013-1337

No data.

Status : Deferred
Published: 2013-05-15T03:36:34.420
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-1337

No data.