Microsoft .NET Framework CVE-2013-0073 Remote Privilege Escalation Vulnerability
BID:57847
Info
Microsoft .NET Framework CVE-2013-0073 Remote Privilege Escalation Vulnerability
| Bugtraq ID: | 57847 |
| Class: | Design Error |
| CVE: |
CVE-2013-0073 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 12 2013 12:00AM |
| Updated: | May 06 2013 07:51AM |
| Credit: | James Forshaw of Context Information Security |
| Vulnerable: |
Microsoft .NET Framework 3.5.1 Microsoft .NET Framework 4.0 Microsoft .NET Framework 3.5 Microsoft .NET Framework 2.0 SP2 Avaya Messaging Application Server 5.2 Avaya Conferencing Standard Edition 6.0 SP1 Avaya Conferencing Standard Edition 6.0 Avaya Communication Server 1000 Telephony Manager 4.0 Avaya Communication Server 1000 Telephony Manager 3.0 Avaya CallPilot 5.0 Avaya CallPilot 4.0 |
| Not Vulnerable: | |
Discussion
Microsoft .NET Framework CVE-2013-0073 Remote Privilege Escalation Vulnerability
The Microsoft .NET Framework is prone to a remote privilege-escalation vulnerability.
Successful exploits may allow an attacker to execute arbitrary code with elevated privileges; this may result in the attacker gaining complete control of the affected system.
The Microsoft .NET Framework is prone to a remote privilege-escalation vulnerability.
Successful exploits may allow an attacker to execute arbitrary code with elevated privileges; this may result in the attacker gaining complete control of the affected system.
Exploit / POC
Microsoft .NET Framework CVE-2013-0073 Remote Privilege Escalation Vulnerability
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Microsoft .NET Framework CVE-2013-0073 Remote Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Microsoft .NET Framework CVE-2013-0073 Remote Privilege Escalation Vulnerability
References:
References:
- Microsoft .NET Framework Developer Center (Microsoft)
- Microsoft Homepage (Microsoft)