CVE-2014-1806
The .NET Remoting implementation in Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, and 4.5.1 does not properly restrict memory access, which allows remote attackers to execute arbitrary code via vectors involving malformed objects, aka "TypeFilterLevel Vulnerability."
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.2675 (26.8%)
Percentile: 96.4%
EPSS: 2026-05-06
Affects
microsoft:.net_frameworkTechnical description
The .NET Remoting implementation in Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, and 4.5.1 does not properly restrict memory access, which allows remote attackers to execute arbitrary code via vectors involving malformed objects, aka "TypeFilterLevel Vulnerability."
Published: 5/14/2014, 11:13:06 AM
Last modified: 5/6/2026, 10:30:45 PM