Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The default configuration of ASP.NET in Microsoft .NET before 1.1 has a value of FALSE for the EnableViewStateMac property, which allows remote attackers to conduct cross-site scripting (XSS) attacks via the __VIEWSTATE parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft ASP.NET EnableViewStateMac属性跨站脚本攻击漏洞
Vulnerability Description
ASP.NET是由微软在.NET Framework中所提供的,开发Web应用程序的类库。 Microsoft ASP.NET的ASP.NET对EnableViewStateMac属性设置了FALSE值,远程攻击者可以利用__VIEWSTATE参数发起跨站脚本攻击(XSS)。
CVSS Information
N/A
Vulnerability Type
N/A