Microsoft ASP.Net 1.1 allows remote attackers to bypass the Cross-Site Scripting (XSS) and Script Injection protection feature via a null character in the beginning of a tag name.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=106304326916062&w=2 |
Configurations
Information
Published : 2003-09-21 21:00
Updated : 2016-10-17 19:37
NVD link : CVE-2003-0768
Mitre link : CVE-2003-0768
JSON object : View
CWE
Products Affected
microsoft
- asp.net