Access Restriction Bypass
Affecting system.servicemodel.http package, versions [4.0.0, 4.1.2), [4.3, 4.3.2), [4.4, 4.4.3), [4.5 ,4.5.2)
Affected versions of
system.servicemodel.http are vulnerable to Access Restriction Bypass. It does not correctly validate certificates. An attacker who successfully exploited this vulnerability could present an expired certificate when challenged.
Note: If an application does not use Windows Communication Foundation you are not affected.
system.servicemodel.http to version 4.1.2, 4.3.2, 4.4.3, 4.5.2 or higher.