CVE-2017-0248
HIGH.NET Framework Security Feature Bypass via Improper Certificate Validation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-0248. PoCs published by rubenmamo.
AI-analyzed exploit summary The repository contains only an AssemblyInfo.cs file with metadata for a CVE-2017-0248 test project, but no actual exploit code or technical details. This appears to be a placeholder or incomplete project.
Description
Microsoft .NET Framework 2.0, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7 allow an attacker to bypass Enhanced Security Usage taggings when they present a certificate that is invalid for a specific use, aka ".NET Security Feature Bypass Vulnerability."
Exploits (1)
The repository contains only an AssemblyInfo.cs file with metadata for a CVE-2017-0248 test project, but no actual exploit code or technical details. This appears to be a placeholder or incomplete project.
References (3)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N