← Back

CVE-2013-0005

nvd nist
Published: Jan 9, 2013Modified: Apr 29, 2026

JSON object

Loading...
7.8
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 10.0 / Impact: 6.9
Source: NVD

Description

The WCF Replace function in the Open Data (aka OData) protocol implementation in Microsoft .NET Framework 3.5, 3.5 SP1, 3.5.1, and 4, and the Management OData IIS Extension on Windows Server 2012, allows remote attackers to cause a denial of service (resource consumption and daemon restart) via crafted values in HTTP requests, aka "Replace Denial of Service Vulnerability."

Affected (5)

2 products
.net Framework
Management Odata Iis Extension
Configuration A
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Version 3.5
Running on/withPlatform Versions
Microsoft
Windows 8
All versions
Microsoft
Windows 8
All versions
Configuration B
1 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Version 3.5 sp1
Running on/withPlatform Versions
Microsoft
Windows Server 2008
All versions
Microsoft
Windows Vista
All versions
Microsoft
Windows Xp
All versions
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.5.1
Configuration D
1 vulnerable · 13 platform
Vulnerable SoftwareAffected Versions
Version 4.0
Running on/withPlatform Versions
Microsoft
Windows 7
All versions
Microsoft
Windows 7
All versions
Microsoft
Windows 7
All versions
Microsoft
Windows Server 2003
All versions
Microsoft
Windows Server 2008
All versions
Microsoft
Windows Server 2008
All versions
Microsoft
Windows Server 2008
All versions
Microsoft
Windows Server 2008
Version r2
Microsoft
Windows Server 2008
Version r2
Microsoft
Windows Server 2008
Version r2 sp1
Microsoft
Windows Vista
All versions
Microsoft
Windows Xp
All versions
Microsoft
Windows Xp
Version sp2 professional
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Microsoft
Windows Server 2012
All versions

Timeline

No history available yet.