Microsoft Security Advisory (2416728): Vulnerability in ASP.NET Could Allow Information Disclosure
-
Microsoft Security Advisory (2416728): Vulnerability in ASP.NET Could Allow Information Disclosure
Revision Note: V1.2 (September 24, 2010): Added an entry to the FAQ to announce a revision to the workaround, "Enable a UrlScan or Request Filtering rule, enable ASP.NET custom errors, and map all error codes to the same error page." Customers who have already applied the workaround should reapply all listed steps.Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS10-070 to address this issue. For more information about this issue, including download links for an available security update, please review MS10-070. The vulnerability addressed is the ASP.NET Padding Oracle Vulnerability - CVE-2010-3332.
More...
Similar Threads
-
By News in forum Security Alerts
Replies: 0
Last Post: 11-17-2010, 06:50 PM
-
By News in forum Security Alerts
Replies: 0
Last Post: 10-12-2010, 06:40 PM
-
By News in forum Security Alerts
Replies: 0
Last Post: 09-24-2010, 09:30 PM
-
By News in forum Security Alerts
Replies: 0
Last Post: 09-21-2010, 04:40 PM
-
By News in forum Security Alerts
Replies: 0
Last Post: 09-17-2010, 11:10 PM
Visitors found this page by searching for:
Search engine data is still being processed!
Tags for this Thread
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules