First published: Tue Feb 22 2005(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal ASCII characters, including ">" and "<".
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET Framework | =1.1-sp1 | |
Microsoft .NET Framework | =1.0 | |
Microsoft .NET Framework | =1.0-sp2 | |
Microsoft .NET Framework | =1.1 | |
Mono Mono | =1.0.5 | |
Microsoft .NET Framework | =1.0-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.