Microsoft ASP.NET Security Advisory

Microsoft has issued a security advisory regarding a vulnerability in their ASP.NET Framework code, particularly with regards to a vulnerability in the use of web.config files.

Information on the vulnerability is shown on this Microsoft webpage below:
http://www.microsoft.com/technet/security/advisory/2416728.mspx

We have found more details about the ASP.NET security concern on this webpage:
http://weblogs.asp.net/scottgu/archive/2010/09/18/important-asp-net-security-vulnerability.aspx


We recommend customer's utilizing ASP.NET in their website and with a web.config file, consider following the recommendations posted on the sites above.  Please note this is an advisory and we are not endorsing other sites ideas on how to mitigate the security concern.  We will continue to monitor Microsoft updates awaiting one from Microsoft to apply to our servers, if one is provided.

Add Feedback