CVE-2007-0042

Microsoft .NET Framework 1.0, 1.1, 2.0 - Unauthorized Sensitive Information Exposure via Null Byte Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-0042. PoCs published by Paul Craig.

AI-analyzed exploit summary The provided text describes a NULL-byte injection vulnerability in Microsoft .NET Framework, where unsanitized user input can lead to information disclosure or other attacks. The example URL demonstrates the vulnerability but lacks executable exploit code.

Description

Interpretation conflict in ASP.NET in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to access configuration files and obtain sensitive information, and possibly bypass security mechanisms that try to constrain the final substring of a string, via %00 characters, related to use of %00 as a string terminator within POSIX functions but a data character within .NET strings, aka "Null Byte Termination Vulnerability."

Exploits (1)

exploitdb WRITEUP VERIFIED
by Paul Craig · textremotewindows
https://www.exploit-db.com/exploits/30281

The provided text describes a NULL-byte injection vulnerability in Microsoft .NET Framework, where unsanitized user input can lead to information disclosure or other attacks. The example URL demonstrates the vulnerability but lacks executable exploit code.

Classification
Writeup 80%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Theoretical
Target: Microsoft .NET Framework (unspecified version)
No auth needed
Prerequisites: Access to a vulnerable .NET Framework application · Ability to inject NULL bytes into user-supplied input
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Various Sources vendor-advisory x_refsource_hp
http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.html
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2482
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2070
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26003
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA07-191A.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1018356

Scores

EPSS 0.7615
EPSS Percentile 99.5%

Details

CWE
CWE-200
Status published
Products (3)
microsoft/.net_framework 1.0
microsoft/.net_framework 1.1
microsoft/.net_framework 2.0
Published Jul 10, 2007
Tracked Since Feb 18, 2026