Vulnerable Systems:
*.NET Framework 3.5.1 and prior
Microsoft .NET Framework contains a flaw in the Replace() function that may allow a remote denial of service. The issue is triggered when handling Open Data Protocol (OData) data . With a specially crafted HTTP request containing such data, a remote attacker can cause the system to consume all available resources, resulting in a crash.