Microsoft .NET Framework 2.0 SP2, 3.5.1, and 4 does not properly validate the System.Net.Sockets trust level, which allows remote attackers to obtain sensitive information or trigger arbitrary outbound network traffic via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka "Socket Restriction Bypass Vulnerability."
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 17 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2024-10-17T18:19:06.953Z
Reserved: 2011-05-09T00:00:00
Link: CVE-2011-1978
Updated: 2024-08-06T22:46:00.915Z
Status : Deferred
Published: 2011-08-10T21:55:02.017
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-1978
No data.
OpenCVE Enrichment
No data.
Weaknesses