Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Microsoft .NET 'ASP.NET' Cross-Site Scripting vulnerability

Information

Severity

Severity

Medium

Family

Family

Windows

CVSSv2 Base

CVSSv2 Base

4.3

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:N/I:P/A:N

Solution Type

Solution Type

Vendor Patch

Created

Created

13 years ago

Modified

Modified

5 years ago

Summary

The host is running Microsoft .NET and is prone to Cross-Site Scripting Vulnerability.

Insight

Insight

The flaw is due to error in the default configuration of 'ASP.NET' it has a value of FALSE for the EnableViewStateMac property when processing the '__VIEWSTATE' parameter.

Affected Software

Affected Software

Microsoft .NET version prior to 1.1

Solution

Solution

Upgrade to Microsoft .NET 1.1 or later.

Common Vulnerabilities and Exposures (CVE)