vendor:
.Net Framework
by:
Soroush Dalili and Ali Abbasnejad
7,5
CVSS
HIGH
Denial of Service
20
CWE
Product Name: .Net Framework
Affected Version From: .Net Framework 1.0
Affected Version To: .Net Framework 4.0
Patch Exists: YES
Related CWE: N/A
CPE: a:microsoft:.net_framework
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP, Windows 2003, Windows 2003 R2, Windows 2008, Windows 2008 R2, Windows 7
2010
.Net Framework Tilde Character DoS
The vulnerability is caused by a tilde character '~' in a Get request, which could allow remote attackers to Deny the functionality of the server.
Mitigation:
Workarounds through Vendor and security vendors.