Microsoft Security Advisory Warns of .NET Vulnerability

2

Comments

Comments are closed on this article

avatar

svelasquez123

http://weblogs.asp.net/scottgu/archive/2010/09/18/important-asp-net-security-vulnerability.aspx

avatar

Infidelus

Not true that there is nothing you can do.  You can enable custom errors so that all errors of all types point to the save error page.  This effectively shuts down the exploit because the attacker can't get incremental information on the cryptographic oracle. In fact, they posted that workaround to the dev community before it even made news. 

Log in to MaximumPC directly or log in using Facebook

Forgot your username or password?
Click here for help.

Login with Facebook
Log in using Facebook to share comments and articles easily with your Facebook feed.