ASP.NET Canonicalization Vulnerability

Toby Beaumont has reported a vulnerability in ASP.NET, which can be exploited by malicious people to bypass certain security restrictions. The vulnerability is caused due to a canonicalization error within the .NET authentication schema. This can be exploited to bypass forms based authentication or Windows authorization configurations by using a specially crafted URL.

View: More Information

Download: ASP.NET ValidatePath module Patch

News source: Secunia

Report a problem with article
Next Article

Anarchy Online offers free 14-day trial

Previous Article

Dell to Recall 990,000 Laptop Power Adapters