10/30/2006
Microsoft .NET framework request filtering bypass vulnerability.
October 27, Security Focus — Microsoft .NET framework request filtering bypass vulnerability. Microsoft .NET framework is prone to a vulnerability that may permit the bypassing of content filtering. An attacker can exploit this issue to perform multiple input validation attacks such as cross−site scripting, SQL−injection, and HTML−injection; other attacks are also possible. Vulnerable: Microsoft .NET Framework 2.0. Solution: Currently, Security Focus is not aware of any vendor−supplied patches for this issue.
Source: http://www.securityfocus.com/bid/20753/references
Technorati Tags: Microsoft, .NET vulnerability, Infosec
Filed by Ken at 9:33 am under InfoSec











