First published: Wed Oct 12 2011(Updated: )
Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, and SP1 does not properly validate session cookies, which allows remote attackers to cause a denial of service (IIS outage) via unspecified network traffic, aka "Null Session Cookie Crash."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Forefront Unified Access Gateway | =2010 | |
Microsoft Forefront Unified Access Gateway | =2010-update1 | |
Microsoft Forefront Unified Access Gateway | =2010-sp1 | |
Microsoft Forefront Unified Access Gateway | =2010-update2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.