CVE-2026-54772
- EPSS 0.47%
- Veröffentlicht 08.07.2026 22:06:08
- Zuletzt bearbeitet 09.07.2026 16:29:14
CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, an unauthenticated remote attacker that can reach a NetTcpBinding, NetNamedPipeBinding, or UnixDomainSocketBinding endpoint can tr...
CVE-2026-54776
- EPSS 0.11%
- Veröffentlicht 08.07.2026 22:04:39
- Zuletzt bearbeitet 09.07.2026 16:29:14
CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, a CoreWCF service hosted on Unix Domain Sockets with PosixIdentity client credentials can accept connections that skip the applica...
CVE-2026-54777
- EPSS 0.09%
- Veröffentlicht 08.07.2026 22:01:21
- Zuletzt bearbeitet 10.07.2026 05:16:37
CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF NetNamedPipe transport accepts attachment to a pre-existing named pipe instance, allowing local interception of NetNamedPi...
CVE-2024-28252
- EPSS 0.58%
- Veröffentlicht 15.03.2024 19:15:07
- Zuletzt bearbeitet 09.04.2025 15:34:02
CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. If you have a NetFraming based CoreWCF service, extra system resources could be consumed by connections being left established instead of closing or abortin...