Microsoft .NET framework request filtering bypass vulnerability.

October 27, Security Focus — Microsoft .NET framework request filtering bypass vulnerability. Microsoft .NET framework is prone to a vulnerability that may permit the bypassing of content filtering. An attacker can exploit this issue to perform multiple input validation attacks such as cross−site scripting, SQL−injection, and HTML−injection; other attacks are also possible. Vulnerable: Microsoft .NET Framework 2.0. Solution: Currently, Security Focus is not aware of any vendor−supplied patches for this issue.
Source: http://www.securityfocus.com/bid/20753/references

Technorati Tags: , ,

No comments yet. Be the first.

Leave a reply