TITLE:
Microsoft ASP.NET URL Validation Security Bypass

SECUNIA ADVISORY ID:
SA20999

VERIFY ADVISORY:
http://secunia.com/advisories/20999/

CRITICAL:
Moderately critical

IMPACT:
Security Bypass

WHERE:
>From remote

SOFTWARE:
Microsoft .NET Framework 2.x
http://secunia.com/product/6456/

DESCRIPTION:
A vulnerability has been reported in .NET Framework, which can 
be
exploited by malicious people to bypass certain security
restrictions.

The vulnerability is caused due insufficient URL validation and 
can
be exploited to gain access to known objects in the Application
folders.

SOLUTION:
Apply patches.

Microsoft .NET Framework:
http://www.microsoft.com/downloads/details.aspx?familyid=56A1777B-9758-489F-8BE8-5177AAF488D1

ORIGINAL ADVISORY:
MS06-033 (KB917283):
http://www.microsoft.com/technet/security/Bulletin/MS06-033.mspx
============= PCWorks Mailing List =================
Don't see your post? Check our posting guidelines &
make sure you've followed proper posting procedures,
http://pcworkers.com/rules.htm
Contact list owner <[EMAIL PROTECTED]>
Unsubscribing and other changes: http://pcworkers.com
=====================================================

Reply via email to