MS13-040: Vulnerabilities in .NET Framework Could Allow Spoofing (2836440)

Medium Nessus Plugin ID 66415


The version of the .NET Framework installed on the remote host is affected by multiple vulnerabilities.


The remote Windows host is running a version of the Microsoft .NET Framework that is affected by multiple vulnerabilities :

- A spoofing vulnerability exists that could allow an attacker to modify the contents of an XML file without invalidating the signature associated with the file.

- An authentication bypass vulnerability exists because of the way the Microsoft .NET framework improperly creates policy requirements for authentication when setting up WCF endpoint authentication. A remote attacker who exploited this vulnerability may be able to steal information or take actions in the context of an authenticated user. (CVE-2013-1337)


Microsoft has released a set of patches for .NET Framework 2.0 SP2, 3.5.1, 4.0, and 4.5.

See Also

Plugin Details

Severity: Medium

ID: 66415

File Name: smb_nt_ms13-040.nasl

Version: $Revision: 1.9 $

Type: local

Agent: windows

Published: 2013/05/15

Modified: 2017/07/26

Dependencies: 57033, 13855

Risk Information

Risk Factor: Medium


Base Score: 6.4

Temporal Score: 5.6

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:N

Temporal Vector: CVSS2#E:ND/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/o:microsoft:windows, cpe:/a:microsoft:.net_framework

Required KB Items: SMB/MS_Bulletin_Checks/Possible

Exploit Available: false

Exploit Ease: No known exploits are available

Patch Publication Date: 2013/05/14

Vulnerability Publication Date: 2013/05/14

Reference Information

CVE: CVE-2013-1336, CVE-2013-1337

BID: 59789, 59790

OSVDB: 93301, 93302

MSFT: MS13-040

MSKB: 2804576, 2804577, 2804579, 2804580, 2804582, 2804583, 2804584