The Artima Developer Community
Sponsored Link

.NET Buzz Forum
ASP.NET Security Issue and Guidance

0 replies on 1 page.

Welcome Guest
  Sign In

Go back to the topic listing  Back to Topic List Click to reply to this topic  Reply to this Topic Click to search messages in this forum  Search Forum Click for a threaded view of the topic  Threaded View   
Previous Topic   Next Topic
Flat View: This topic has 0 replies on 1 page
Scott Watermasysk

Posts: 661
Nickname: scottwater
Registered: Aug, 2003

Scott Watermasysk is an ASP.NET developers. He wrote the .Text blog engine.
ASP.NET Security Issue and Guidance Posted: Oct 5, 2004 8:35 PM
Reply to this message Reply

This post originated from an RSS feed registered with .NET Buzz by Scott Watermasysk.
Original Post: ASP.NET Security Issue and Guidance
Feed Title: ScottW's ASP.NET WebLog
Feed URL: /error.aspx?aspxerrorpath=/blog/rss.aspx
Feed Description: ASP.NET and Blogging
Latest .NET Buzz Posts
Latest .NET Buzz Posts by Scott Watermasysk
Latest Posts From ScottW's ASP.NET WebLog

Advertisement

If you run/manage/etc an ASP.Net site which uses Forms Authenticatin:

This alert is to advise you of the availability of a web page that discusses an investigation Microsoft is currently conducting into public reports of a security vulnerability in ASP.NET. A malicious user could provide a specially-formed URL that could result in the unintended serving of secured content.

This alert is also to advise you of the availability of a new Microsoft Knowledge Base article: 887459. This article contains prescriptive guidance with steps customers can implement on their ASP.NET applications to help protect against a wide variety of malformed URL attacks.

Microsoft is providing this prescriptive guidance in order to inform customers as quickly as possible about the vulnerability and information on how to prevent an attack. Microsoft is actively investigating this issue and plans to release additional guidance and a security update to remedy the issue as soon as possible.
The Microsoft Knowledge Base article can be viewed here: http://support.microsoft.com/?kbid=887459

The web page that discusses the current investigation into the public reports of a vulnerability in ASP.Net can be viewed here: http://www.microsoft.com/security/incident/aspnet.mspx [ASP.Net Forums]

Please post any questions here.

Read: ASP.NET Security Issue and Guidance

Topic: Telerik CMS Editor - Roadmap Previous Topic   Next Topic Topic: HttpUtility.UrlEncode throws a Security Exception

Sponsored Links



Google
  Web Artima.com   

Copyright © 1996-2019 Artima, Inc. All Rights Reserved. - Privacy Policy - Terms of Use